Back to Home
arvindand icon

maven-tools-mcp

Verified Safe

by arvindand

Overview

Dependency intelligence for AI assistants and agents working with JVM projects, providing analysis, version lookup, security, and license insights.

Installation

Run Command
docker run -i --rm arvindand/maven-tools-mcp:latest

Security Notes

The server uses HTTPS for all external API calls to Maven Central, OSV.dev, and Context7. Resilience4j (Circuit Breaker, Rate Limiter, Retry) is implemented for robust handling of external service failures. Input validation is present for Maven coordinates. Concurrency is managed with virtual threads and semaphores to prevent resource exhaustion and overloading external services. No hardcoded secrets or obvious malicious patterns were found. The use of regex for parsing POM XML for license information is specific to well-defined structures and not a general XML parsing, mitigating common regex for XML risks.

Similar Servers

Stats

Interest Score33
Security Score9
Cost ClassLow
Avg Tokens750
Stars3
Forks0
Last Update2026-01-17

Tags

MavenJVMDependenciesAI ToolsSecurity