What it does
MCP Security Audit checks the dependencies of an npm package for known security vulnerabilities. It queries the npm registry in real time and groups findings by severity, from critical to low, with suggested fixes and CVE references. It works with npm, pnpm and yarn projects.
Use cases
- 01Scan a project's npm dependencies before a release
- 02Sort vulnerabilities by severity to plan fixes
- 03Review which dependencies need an update and why