MCPFax Dev Package Intelligence MCP server
Is this dependency current, licensed, deprecated, or already carrying a CVE?
Little public usage data yet
Reviews
Write oneNobody has reviewed MCPFax Dev Package Intelligence yet.
If you have run it, two minutes of your experience saves the next person an afternoon.
MCPFax Dev Package Intelligence tools (5)
write = sends, deletes, buys or postsdemand_reportFreeFREE, no payment. The aggregate of what agents have told us they are looking for, most-requested first, with the categories nothing available yet serves.
package_auditFreeOne call that answers whether a dependency is safe to add: latest version, licence, deprecation, advisories affecting the current version, how long since the last release, and a verdict with the specific concerns found. Prefer this over calling package_info and package_vulnerabilities separately — it is one payment instead of two and applies the judgement. A clean verdict means nothing was found in these sources, not that the package is guaranteed safe. Costs $0.01 USDC per call via x402 on Base.
package_infoFreeLook up a package in npm, PyPI or crates.io: latest version, licence, whether it is deprecated or yanked, when it was last published, dependency count and repository. Use before writing a dependency line, or to check whether a pinned version is behind. Registries answer with hundreds of kilobytes; this returns only the facts that decide the question. Costs $0.005 USDC per call via x402 on Base.
package_vulnerabilitiesFreeKnown security advisories for a package from OSV, the open advisory database. Returns advisory ids, severity, summary and the versions that fix each one. Pass 'version' to ask only about the version you are about to install; omit it to see advisories affecting any version. Use before pinning a dependency or when auditing a lockfile. Costs $0.008 USDC per call via x402 on Base.
request_dataFreeFREE, no payment. Describe in your own words the data you are trying to buy — anything, not just packages — and get back whether we operate a service that supplies it, with the MCP endpoint if so. Every request is catalogued so repeatedly-requested data gets built. Nothing identifying is stored, only the words of the request.
Public scan report
scanner v0.1.9 · 2026-09-20 · same rubric, same numbers if you re-run it
- –Code scanremote-only server, no package to scann/a
- Live reliabilityremote reachable in 130ms20/20
- Tool poisoning5 tool descriptions checked15/15
- Auth qualityopen endpoint, read-only tools10/15
- Maintenanceno repository listed3/15
- Maintainer identityverified namespace with website, no repo4/10
Findings (1)
- lowNo source repository listed
maint.no-repo
Install directly
claude mcp add --transport http dev-package-intel https://devpkg-intel.bowling-anthony.workers.dev/mcp
MCPFax Dev Package Intelligence: common questions
- Is MCPFax Dev Package Intelligence MCP server safe?
- With care: it is graded C, so read the findings first (69/100). Read the MCPFax Dev Package Intelligence safety report
- How do I install MCPFax Dev Package Intelligence?
- It runs remotely at devpkg-intel.bowling-anthony.workers.dev. Add it to Claude Code, Claude Desktop or Cursor with the snippets above, or call it through the mcp.market gateway without installing anything.
- Does MCPFax Dev Package Intelligence need an API key?
- Not as far as the registry entry and our scan can tell: no credentials are declared or required.
- Is MCPFax Dev Package Intelligence maintained?
- The latest release is v1.0.2.
- Is MCPFax Dev Package Intelligence up?
- 100% of our last 6 checks got an answer. We check remote servers about four times a day.
- What can I use instead of MCPFax Dev Package Intelligence?
- Servers from other publishers that do the same job: npm Registry MCP Server, Security Intel MCP server and VulnCheck MCP server. Compare all MCPFax Dev Package Intelligence alternatives.
Alternatives to MCPFax Dev Package Intelligence
Same job from other publishers: the closest match first, then the best rated.
- npm Registry MCP Servernpm registry MCP server — package intelligence, security audits, dependency analysisnot reviewedGrowingB
- Security Intel MCPCVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.not reviewedNewA
- VulnCheckVulnCheck exploit intelligence — CVE research, exploit data, advisories, and threat analysis.not reviewedGrowingA
- Presend MCP ServerFree MCP server: 36 security & dev API tools -- WHOIS, DNS, CVE, IP reputation, Cosmos SDK.not reviewedGrowingB
- HoneyLabsHoneypot probe data: IP reputation, scanners, CVE probing, TLS and SSH fingerprints.not reviewedGrowingB