License check, outdated deps, security for AI agents
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-rog0x-dep": {
"args": [
"-y",
"@rog0x/mcp-dep-tools"
],
"command": "npx"
}
}
}Well-structured MCP server with clean code and appropriate permissions for dependency analysis. Minor improvement needed for shell command timeout handling in security audit, but overall security posture is solid. Supply chain analysis found 2 known vulnerabilities in dependencies (0 critical, 2 high severity). Package verification found 1 issue.
Scanned 7 files · 6 findings
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Be the first to review this server!