MCP server intelligence profile

deptrust MCP Server

deptrust is a CLI that checks package versions for known vulnerabilities across npm, PyPI, crates.io, Go modules, RubyGems, NuGet, Maven, Packagist, pub.dev, CocoaPods, Hex.pm, Hackage, GitHub Actions, and more. It runs locally as a CLI and as an MCP server.

Local OnlyOfficial distributionclidey
Awaiting current scanNpm · 0.14.0

The selected current version does not yet have completed public verification. Unknown does not mean clean or vulnerable.

1Distribution channel
PendingTool inventory
0Linked remote endpoints
AvailableVersion intelligence

Install and connect

Installation and connection instructions are shown only when supported by retained package, repository, or endpoint evidence.

Install @clidey/deptrust from npm

Version 0.14.0 declares 1 executable entrypoint.

npm install --save-exact @clidey/deptrust@0.14.0
npx -y -p @clidey/deptrust@0.14.0 @clidey/deptrust
MCP client configuration example
{
  "mcpServers": {
    "@clidey/deptrust": {
      "command": "npx",
      "args": [
        "-y",
        "-p",
        "@clidey/deptrust@0.14.0",
        "@clidey/deptrust"
      ]
    }
  }
}

Identity

Canonical slugdeptrust-e07d1fbeDeploymentLocal Only
Canonical packagenpm:@clidey/deptrustRepositoryclidey/deptrust
First publishedLatest release
Last security verificationClassification confidence90%
PublicationPublishedOfficial distributionYes

Distributions

ChannelIdentifierCurrent versionVersionsSource
npm@clidey/deptrust0.14.014Repository

Current release

PackageVersionPublished / observedInventorySecurity scan
npm@clidey/deptrust0.14.0CurrentSep 5, 2026Not scanned
Enterprise protection

Continuously monitor this MCP for security risk

Independently scan the exact version your agents use, receive alerts when its risk changes, and investigate every finding with retained version evidence.

  • Independent exact-version security scans
  • Continuous release and vulnerability monitoring
  • Risk-change alerts with capability context
  • Historical evidence and API exports
Custom pricingContact salesTailored to your organization, integrations, data needs, and support requirements.

Current version evidence

Provenanceartifact_hash_verifiedSignature
MCP SDKArtifact SHA-256e5e9d80986599d29e735b5a9af98afc74a8b0210ba34a345288f535253bc5cf1
ScannerScan completed
Security rating28 / 100Methodologyversion-rating-1.0
Executable entrypoints
[
  "@clidey/deptrust"
]
Rating reasons
[
  "security_policy_not_observed"
]

Best available protocol inventory

Tool inventory is pending. This does not mean the MCP exposes zero tools. Tools, resources, templates, and prompts appear here after the current version completes independent protocol inventory.

Remote endpoints

EndpointTransportAuthenticationHealthObserved
No verified remote endpoint is linked.

deptrust MCP Server questions

How do I install deptrust MCP Server?

Install the selected package version with: npm install --save-exact @clidey/deptrust@0.14.0

What tools does deptrust MCP Server provide?

A current independently observed tool inventory is not available yet. This does not mean deptrust MCP Server exposes zero tools.

Is deptrust MCP Server secure?

The selected current version does not yet have completed public verification. Unknown does not mean clean or vulnerable.

Explore related MCP server guides

Curated product and capability guides containing this catalog record.

GitHub MCP ServersOfficial vs Community MCP Servers

Let’s talk about MCP security.

Share your details and our security team will contact you.