Server data from the Official MCP Registry
MCP server for npm package management — publish, version, search, audit, and more
MCP server for npm package management — publish, version, search, audit, and more
Set these up before or after installing:
Environment variable: NPM_TOKEN
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-mikusnuz-npm": {
"env": {
"NPM_TOKEN": "your-npm-token-here"
},
"args": [
"-y",
"@mikusnuz/npm-mcp"
],
"command": "npx"
}
}
}This npm package management MCP server has solid security practices with proper token handling and comprehensive npm tooling. Authentication is handled securely through environment variables or existing npm credentials. All permissions align appropriately with the server's npm management purpose. Supply chain analysis found 3 known vulnerabilities in dependencies (0 critical, 3 high severity). Package verification found 1 issue.
Scanned 3 files · 6 findings
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Be the first to review this server!