MCP serverai.kaiv/dependency-trust
Trust-check any dependency for agents: OpenSSF Scorecard, licenses, CVEs, deps.
Read more
Trust-check any dependency for agents: OpenSSF Scorecard, licenses, CVEs, deps. 7 ecosystems.Overview
Score?
UNRATED 0.795
of what a free look can see, on 32 looks
Looks
36
last 10 hr ago
Tools
5
changed 28 days ago
More info
URL
api.kaiv.ai/api/bridge/mcp/dependency-trust-f1aaf06d
streamable-http
Says it is
dependency-trust 1.0.0
protocol 2025-06-18
In the record since
32 days ago
Among servers18,413 with a card
0median 0.606 · this server 0.795 · highest on record 0.8561
Toolsfrom sha256:3aea324048…ac8eea · +0 −0 28 days ago
| Tool | Schema |
|---|---|
| get_advisory Get a security advisory (vulnerability) by its key.
Returns a security advisory by key, for example a GHSA id taken from a version's advisoryKeys, including the title, CVE aliases |
input · output |
| get_dependencies Get the resolved dependency graph for one package version.
Returns the full resolved dependency graph (direct and indirect) for a version. Each node has the dependency's exact ver |
input · output |
| get_package List every version of a package and whether each is deprecated.
Returns all published versions of a package with publish date, the default-version flag, and deprecation status. Us |
input · output |
| get_package_version Get license, security advisories, and source links for one package version.
Returns detailed metadata for a single version: SPDX licenses, security advisoryKeys (known vulnerabili |
input · output |
| get_project_health Get a project's OpenSSF Scorecard security posture and maintenance signals.
THE trust check. Returns supply-chain trust signals for a package's source repository: the OpenSSF Scor |
input · output |
Verify it yourself
npx teppi-check https://api.kaiv.ai/api/bridge/mcp/dependency-trust-f1aaf06dcurl -s https://api.teppi.xyz/v1/trust/mcp/mcs_01M1FZ22875M207HZY5P5R5TQJ