Back to the catalog

io.github.rog0x/dep

License check, outdated deps, security for AI agents

Open source Open in the app JSON README (API)

About

License check, outdated deps, security for AI agents

Details

Kind
MCP servers
Topic
No topic detected
Publisher
rog0x
Origin
official
Category
ferramentas
Transport
local
Version
1.0.1
Last push
2026-03-21T20:22:09Z
Repository state
ativo
Language
TypeScript
License
NOASSERTION
Added
2026-08-29 04:01:19
Updated
2026-08-29 04:01:19
Origin id
io.github.rog0x/dep

README

# mcp-dep-tools

MCP server providing dependency and package management tools for AI agents. Analyze licenses, find outdated packages, visualize dependency trees, estimate bundle sizes, and audit security vulnerabilities — all from your AI assistant.

## Tools

### dep_check_licenses
Analyze licenses of all dependencies in a project. Lists each dependency's license type, flags copyleft (GPL) and unknown licenses, and checks for compatibility issues.

### dep_find_outdated
Check which dependencies are outdated. Compares installed or specified versions against the latest on npm, categorizes updates as major/minor/patch, and shows how many days since the latest version was published.

### dep_analyze_tree
Build and display the dependency tree. Shows direct dependencies and their transitive sub-dependencies, calculates maximum depth, detects circular dependencies, and counts total transitive packages.

### dep_analyze_size
Estimate total bundle size from package.json without installing node_modules. Queries the Bundlephobia API for each production dependency to get minified and gzipped sizes.

### dep_security_audit
Check dependencies for known security vulnerabilities. Runs `npm audit` when a lockfile is present, otherwise queries the npm registry advisory API directly. Reports severity levels, affected version ranges, and fix recommendations.

## Setup

```bash
npm install
npm run build
```

## Usage with Claude Desktop

Add to your Claude Desktop config:

```json
{
  "mcpServers": {
    "dep-tools": {
      "command": "node",
      "args": ["path/to/mcp-dep-tools/dist/index.js"]
    }
  }
}
```

## All tools accept a single parameter

- **project_dir** (string, required): Absolute path to the project directory containing a `package.json`.

## License

MIT

More