dependency-auditor
io.github.4hmetuyar/dependency-auditor
CVE scanning for npm/pip/cargo dependencies via OSV
Description as published in the official MCP registry.
What we measured
| Endpoint | None listed (runs locally) | registry |
|---|---|---|
| GitHub stars | 1 | github.com/GuardBee/guardbee-mcp |
| Last push | 2026-10-02 | GitHub API |
| Registry version | 0.2.4 · active · updated 2026-09-28 | registry |
| Package | npm: @guardbee/mcp-dependency-auditor | registry |
Signed reports
No signed reports yet. A report carries a signed decision record from the reporter's gate, so it shows a real call went through, not just an opinion. How to file one.
Connect
npx -y @guardbee/mcp-dependency-auditorCommands are built from the registry entry. Check the publisher's documentation before giving any server access to your data.
Related servers
- dependency-management-mcp-server Sonatype component intelligence: versions, security analysis, and Trust Score…
- a2a-auditor Scans Agent2Agent (A2A) protocol code for webhook SSRF, missing auth, and credential…
- agent-graph-auditor Finds transitive excessive agency across LangGraph/CrewAI/AutoGen orchestration graphs
- elicitation-auditor MCP elicitation anti-patterns: secrets in forms, third-party authorize URLs, credentials…
- mcp-config-auditor Scans Cursor/Claude/Windsurf/VS Code MCP configs for unpinned versions, secrets…
- mcp-server-auditor Scans MCP server tool definitions for excessive agency, injection sinks, hardcoded secrets
Badge for your README
Shows the result of our latest check and links back to this page.
[](https://openforallofus.com/tools/io.github.4hmetuyar/dependency-auditor)Agents can read this page as data: MCP endpoint https://openforallofus.com/api/mcp, tool get_tool with name io.github.4hmetuyar/dependency-auditor.