Back to Home
sonatype icon

dependency-management-mcp-server

Verified Safe

by sonatype

Overview

Connects AI assistants to Sonatype's dependency management and security intelligence platform, providing real-time insights into open-source security vulnerabilities, license compliance, and dependency health.

Installation

Run Command
No command provided

Security Notes

The provided source code is limited to the `README.md` file. Therefore, a comprehensive security audit of the actual server implementation or the `mcp-remote` client-side proxy is not possible. The server is described as a remote HTTP service accessible via standard HTTPS and Bearer token authentication. This method is generally secure for data in transit, but the security of the server's internal logic and the `mcp-remote` tool (an external npm package) cannot be assessed from the provided information. Users must trust the remote Sonatype service and the `mcp-remote` package.

Similar Servers

Stats

Interest Score65
Security Score5
Cost ClassMedium
Avg Tokens500
Stars60
Forks15
Last Update2025-12-08

Tags

Dependency ManagementSoftware Supply ChainSecurity AnalysisAI IntegrationModel Context Protocol