← Back to search Server uses network capabilities via: fetch() Server uses filesystem capabilities via: fs Server uses shell capabilities via: child_process, spawn() Server uses env_vars capabilities via: process.env
@yawlabs/npmjs-mcp
npm registry MCP server — package intelligence, security audits, and dependency analysis for AI assistants
B
87.2 / 100
Versions
0.12.2latestJul 21, 2026
0.12.1Jun 7, 2026
0.12.0Jun 4, 2026
0.11.15Jun 3, 2026
0.11.14May 28, 2026
+ show 23 moreshow less
0.11.13May 22, 2026
0.11.12May 19, 2026
0.11.11May 19, 2026
0.11.9May 16, 2026
0.11.8May 16, 2026
0.11.7May 15, 2026
0.11.6May 14, 2026
0.11.5May 13, 2026
0.11.4May 13, 2026
0.11.3May 6, 2026
0.11.2May 5, 2026
0.11.1Apr 24, 2026
0.11.0Apr 20, 2026
0.10.0Apr 20, 2026
0.9.0Apr 19, 2026
0.8.0Apr 16, 2026
0.7.0Apr 14, 2026
0.6.0Apr 12, 2026
0.5.0Apr 11, 2026
0.4.0Apr 10, 2026
0.3.0Apr 9, 2026
0.2.0Apr 9, 2026
0.1.0Apr 9, 2026
Tools 1
@yawlabs/npmjs-mcp annotations: none low
Permissions 4
network medium filesystem low shell high env_vars low Scan Findings 14
low
Tool '@yawlabs/npmjs-mcp' has no annotations
medium
OAuth implementation without PKCE
info
Sandbox failed to start for behavioral verification
info
package.json metadata
info
Tool: @yawlabs/npmjs-mcp
info
Transport: stdio
info
Required env vars (14)
info
Sandbox failed to start for output poisoning scan
medium
Permission: network access detected
low
Permission: filesystem access detected
high
Permission: shell access detected
low
Permission: env_vars access detected
info
SBOM generated: 153 components
medium
No build provenance detected (SLSA L0)