MCPFax Dev Package Intelligence
Is this dependency current, licensed, deprecated, or already carrying a CVE?
我该使用它吗
质量与安全性
基于对工具定义和协议合规性的自动分析。
上下文开销
这是每次将服务器的工具加载到模型上下文窗口时所消耗的大致 token 数。数值越高,可用于其他任务的注意力就越少。
安装
一键安装
将以下内容添加到你的 `claude_desktop_config.json` 文件中:
{
"mcpServers": {
"dev-package-intel": {
"url": "https://devpkg-intel.bowling-anthony.workers.dev/mcp"
}
}
}远程端点
https://devpkg-intel.bowling-anthony.workers.dev/mcpstreamable-http它能做什么
工具清单
工具(5)
🟢request_data(need)
FREE, no payment. Describe in your own words the data you are trying to buy — anything, not just packages — and get back whether we operate a service that supplies it, with the MCP endpoint if so. Every request is catalogued so repeatedly-requested data gets built. Nothing identifying is stored, only the words of the request.
输入模式
{
"type": "object",
"properties": {
"need": {
"type": "string",
"description": "What you are looking for.",
"examples": [
"live electricity spot prices by ZIP"
]
}
},
"required": [
"need"
],
"additionalProperties": false
}⚪demand_report(days)
FREE, no payment. The aggregate of what agents have told us they are looking for, most-requested first, with the categories nothing available yet serves.
输入模式
{
"type": "object",
"properties": {
"days": {
"type": "string",
"description": "Window in days, default 30, max 90.",
"examples": [
"30"
]
}
},
"additionalProperties": false
}🟢package_info(ecosystem, name)
Look up a package in npm, PyPI or crates.io: latest version, licence, whether it is deprecated or yanked, when it was last published, dependency count and repository. Use before writing a dependency line, or to check whether a pinned version is behind. Registries answer with hundreds of kilobytes; this returns only the facts that decide the question. Costs $0.005 USDC per call via x402 on Base.
输入模式
{
"type": "object",
"properties": {
"ecosystem": {
"type": "string",
"description": "One of 'npm', 'pypi', 'crates' (aliases: node, python, rust).",
"examples": [
"npm"
]
},
"name": {
"type": "string",
"description": "Package name, e.g. 'express', '@scope/pkg', 'requests', 'serde'.",
"examples": [
"express"
]
}
},
"required": [
"ecosystem",
"name"
],
"additionalProperties": false
}⚪package_vulnerabilities(ecosystem, name, version)
Known security advisories for a package from OSV, the open advisory database. Returns advisory ids, severity, summary and the versions that fix each one. Pass 'version' to ask only about the version you are about to install; omit it to see advisories affecting any version. Use before pinning a dependency or when auditing a lockfile. Costs $0.008 USDC per call via x402 on Base.
输入模式
{
"type": "object",
"properties": {
"ecosystem": {
"type": "string",
"description": "One of 'npm', 'pypi', 'crates'.",
"examples": [
"npm"
]
},
"name": {
"type": "string",
"description": "Package name.",
"examples": [
"lodash"
]
},
"version": {
"type": "string",
"description": "Optional exact version, e.g. '4.17.20'. Narrows advisories to that version.",
"examples": [
"4.17.20"
]
}
},
"required": [
"ecosystem",
"name"
],
"additionalProperties": false
}⚪package_audit(ecosystem, name)
One call that answers whether a dependency is safe to add: latest version, licence, deprecation, advisories affecting the current version, how long since the last release, and a verdict with the specific concerns found. Prefer this over calling package_info and package_vulnerabilities separately — it is one payment instead of two and applies the judgement. A clean verdict means nothing was found in these sources, not that the package is guaranteed safe. Costs $0.01 USDC per call via x402 on Base.
输入模式
{
"type": "object",
"properties": {
"ecosystem": {
"type": "string",
"description": "One of 'npm', 'pypi', 'crates'.",
"examples": [
"npm"
]
},
"name": {
"type": "string",
"description": "Package name.",
"examples": [
"lodash"
]
}
},
"required": [
"ecosystem",
"name"
],
"additionalProperties": false
}社区
证据