Back to Home
sonatype icon

dependency-management-mcp-server

by sonatype

Overview

Connects AI assistants to Sonatype's dependency management and security intelligence platform for real-time insights into open source security, license compliance, and dependency health within the development workflow.

Installation

Run Command
No command provided

Environment Variables

  • SONATYPE_GUIDE_MCP_TOKEN

Security Notes

The provided 'source code' consists solely of the `README.md` file. As such, a direct analysis of the server's implementation for security risks like 'eval', obfuscation, or malicious patterns is not possible. The server is described as a remote HTTP service hosted by Sonatype. The setup instructions detail client-side configuration using standard HTTPS and Bearer token authentication. The main security risk for users lies in securing their personal API token, which the README appropriately advises against committing to version control.

Similar Servers

Stats

Interest Score58
Security Score7
Cost ClassMedium
Avg Tokens500
Stars65
Forks22
Last Update2026-01-14

Tags

Dependency ManagementSoftware Supply Chain SecurityAI Assistant IntegrationSecurity ScanningLicense Compliance