Skip to main content
Glama
59,754 servers. Last updated

Matching MCP tools:

Matching MCP Connectors:

"npm" matching MCP servers:

  • A
    license
    -
    quality
    C
    maintenance
    Audits npm packages for supply-chain attacks (typosquatting, malicious install scripts, credential exfiltration) before installation, returning a SAFE/SUSPICIOUS/DANGEROUS verdict.
    Last updated
    MIT
  • A
    license
    B
    quality
    B
    maintenance
    A Model Context Protocol server that enables AI-powered analysis of NPM packages through multiple tools for security vulnerability scanning, dependency analysis, package comparison, and quality assessment.
    Last updated
    19
    450
    18
    TypeScript
    MIT
  • A
    license
    -
    quality
    C
    maintenance
    An MCP server for searching, inspecting, and evaluating NPM packages through health scoring and license risk assessments. It provides comprehensive package analysis including maintenance status, popularity trends, and security vulnerability reports to help users make informed dependency decisions.
    Last updated
    3
    MIT
  • A
    license
    -
    quality
    D
    maintenance
    MCP server providing npm registry search, package details, dependency auditing, bundle size estimation, and package comparison tools for AI agents.
    Last updated
    54
    MIT
  • A
    license
    -
    quality
    B
    maintenance
    Enables npm registry operations from MCP clients like Claude Code and Cursor, with 64 tools for package intelligence, security audits, dependency analysis, org/team management, and write operations like deprecate and unpublish.
    Last updated
    163
    2
    MIT
  • A
    license
    -
    quality
    F
    maintenance
    Enables AI-powered JavaScript package management including search, install, update, remove, and security auditing across npm, yarn, and pnpm.
    Last updated
    213
    9
    MIT
  • A
    license
    A
    quality
    C
    maintenance
    Translates a lockfile diff into a human-readable upgrade plan. For every dependency bump (npm or PyPI) returns semver class, breaking changes from GitHub release notes, CVEs fixed in the range, migration guide links, and a clear per-package recommendation. Bulk tool ranks up to 50 package changes in parallel by risk (security > caution > review > likely-safe > safe).
    Last updated
    2
    22
    2
    MIT
  • A
    license
    A
    quality
    B
    maintenance
    AI-powered code assistant that provides advanced search and discovery capabilities across GitHub and NPM ecosystems, helping users understand code patterns, implementations, and connections between repositories.
    Last updated
    13
    526
    889
    TypeScript
    MIT
  • A
    license
    A
    quality
    B
    maintenance
    Godot 4 MCP server with: Test running (GUT/GdUnit4) with structured pass/fail results API docs search with 30+ Godot 3→4 migration mappings Script analysis detecting 10 common GDScript pitfalls Scene/resource file parsing with antipattern detection Viewport screenshot capture LSP diagnostics from Godot's language server TypeScript, cross-platform (macOS/Windows/Linux), published on npm
    Last updated
    8
    133
    8
    MIT
  • F
    license
    A
    quality
    A
    maintenance
    Breaking-change diffs for npm packages, served over REST and MCP, so coding agents stop writing code against outdated API knowledge.
    Last updated
    2
  • A
    license
    A
    quality
    B
    maintenance
    Enables local npm supply-chain inspection through tools for repository scanning, SBOM generation, dependency audit, and evidence reporting. Uses deterministic mock data and does not query live APIs.
    Last updated
    4
    MIT
  • A
    license
    A
    quality
    D
    maintenance
    An AI-powered security audit tool that analyzes codebases for vulnerabilities using real-time MITRE CWE data and npm audit. It enables users to perform comprehensive scans for authentication issues, exposed secrets, and dependency risks with structured remediation steps.
    Last updated
    2
    6
    MIT
  • A
    license
    A
    quality
    D
    maintenance
    An AI-powered security audit tool that analyzes codebases for vulnerabilities using real-time data from MITRE CWE and npm audit. It enables deep analysis of authentication, API security, and dependencies to provide structured findings and remediation steps.
    Last updated
    2
    6
    1
    MIT