Skip to main content
Glama
436,357 tools. Updated 2026-08-10 10:31

"PyPI" matching MCP tools:

  • Retrieve Python package metadata from PyPI, including version, license, and Python compatibility. Use to evaluate library maintenance and compatibility before integration.
    MIT
  • Fetch the SPDX licence identifier for an open source package version to verify licence compatibility before adding a dependency. Supports PyPI, npm, Maven, Go, Cargo, NuGet, and RubyGems.
    Inno Setup
  • Check developer laptops for any installs of a PyPI package to identify potential exposure. Searches all enrolled dev machines, returning all installs or filter by versions. Complements CI checks for comprehensive malicious package incident response.
    Apache 2.0
  • Check whether a software package or infrastructure product version has known CVEs or supply chain compromises. Use this before adding, updating, or recommending dependencies.
    MIT
  • Checks monitored GitHub repositories within an organization for usage of a specified PyPI package at given versions, identifying affected CI pipelines. Use with developer machine checks for full coverage.
    Apache 2.0

Matching MCP Servers

  • A
    license
    -
    quality
    D
    maintenance
    A security-focused MCP server that enables AI assistants to search PyPI packages, scan for vulnerabilities, audit dependencies, and ensure security across Python projects.
    4
    MIT
  • A
    license
    -
    quality
    C
    maintenance
    Wraps the Python Package Index (PyPI) JSON API to enable querying package information, such as details and versions, without authentication.
    7
    MIT

Matching MCP Connectors

  • PyPI MCP — wraps the Python Package Index (PyPI) JSON API (free, no auth).

  • PyPIStats.org — PyPI download statistics

  • List known security vulnerabilities for npm, PyPI, or crates.io packages. Specify an exact version to scope results, or omit it to see all advisories.
    MIT
  • Retrieve full details of a security threat incident, including compromised package names, versions, and C2 domains/IPs. After listing incidents, use this to extract concrete IOCs and determine which exposure checks to run based on the ecosystem (npm or pypi).
    Apache 2.0
  • Retrieve complete dependency graphs for npm, PyPI, or crates.io packages, including direct and transitive dependencies with versions and counts, and flagged deprecated direct dependencies.
    MIT
  • Get a consolidated snapshot of an npm, PyPI, or crates.io package: version, license, downloads, repository, and deprecation status. All key details from one call.
    MIT
  • Retrieve Python package details from PyPI, including version, summary, license, dependencies, and release dates.
    MIT
  • Retrieve public details about a software package, including its description, latest version, license, repository links, homepage, and malicious status. Supported types: PyPI, npm, Maven, Golang, NuGet, Huggingface, RubyGems.
    Apache 2.0
  • Run a multi-source intelligence report by searching up to 18 platforms (HN, GitHub, npm, PyPI, X, Reddit, YouTube, and more) in parallel. Choose a focus preset—balanced (14 free APIs), trending, or comprehensive—or specify exact sources. Requires a query; returns structured JSON results.
    MIT
  • Retrieve the running version of qrz-mcp and the QRZ API contract to detect drift across MCP deployments.
    GPL 3.0
  • Check the PyPI version of lotw-mcp and the ARRL LoTW schema version to detect version drift across MCP deployments.
    GPL 3.0
  • Report the running MCP server version, package path, uptime, tool count, and reload instructions. Use this to verify which Axint process your agent is connected to.
    Apache 2.0
  • Resolve fuzzy or partial package names into real, ranked candidates using live registry search for npm and Cargo, with clear guidance when PyPI search is unavailable.
    MIT
  • Check if a product idea already exists by scanning GitHub, Hacker News, npm, PyPI and Product Hunt to identify competition and market saturation before building.
    MIT
  • Retrieve running PyPI version of solar-mcp and NOAA SWPC spec revision to compare service and spec versions across servers and detect deployment drift.
    GPL 3.0