Sviluppo · Server MCP locale
pkgxray
Pre-install security scans for npm packages, MCP servers, and AI agents with cited verdict evidence.
Cosa indica il MCP Registry
La voce come pubblicata nel MCP Registry ufficiale (consultazione: 4 ottobre 2026), ultima versione.
- Nome nel registro
io.github.adamsjack711-ux/pkgxray- Versione
- 1.0.5
- Stato
- Attivo
- Categoria
- sviluppo
- Trasporto
- stdio (processo locale)
- Pacchetto
- npm
- Pubblicato
- 29 luglio 2026
- Aggiornato
- 29 luglio 2026
- Editore
- adamsjack711-ux (GitHub)
- Namespace
- Namespace verificato dal MCP Registry tramite GitHub (github.com/adamsjack711-ux) · come funziona
- Sito web
- pkgxray.ca/
- Repository
- github.com/adamsjack711-ux/pkgxray
- Fonte
- Voce nell’API del registro
Pacchetti
| Registro | Pacchetto | Versione | Trasporto |
|---|---|---|---|
| npmruntime: npx | pkgxray | 1.0.5 | stdio |
Come collegare pkgxray
pkgxray viene eseguito in locale a partire da un pacchetto Node.js pubblicato nel registro npm: pkgxray, versione 1.0.5. Comunica via MCP su stdio, quindi il client lo avvia come programma e dialoga con esso tramite standard input e standard output. Richiede Node.js; i client in genere lo avviano con npx - il comando abituale è npx -y pkgxray@1.0.5.
Nel formato JSON mcpServers, letto da molti client MCP desktop e per editor di codice, la voce si presenta così (segnaposto tra parentesi angolari):
{
"mcpServers": {
"pkgxray": {
"command": "npx",
"args": [
"-y",
"pkgxray@1.0.5"
]
}
}
}Ricavato dalla voce del registro, non testato qui. Cosa fa il server, e a quali condizioni, lo stabilisce il suo editore; prima di concedergli l’accesso ai propri account o file conviene consultarne il repository o il sito web. Come aggiungere un server MCP a un assistente · Prima di collegare un server
Altri server della categoria sviluppo
| Server | Esecuzione |
|---|---|
| Pizza DeveloperWork management for AI agents: plan Ideas, Batches and Works, keep context, ship Deliveries. | Remoto · HTTPVerifica live: accesso richiesto |
| pkgproofVerify an npm package before you install it: advisories, install scripts, typosquats, provenance. | Locale · stdio |
| PkgSeek Linux IntelligenceLinux package, file, command, vulnerability, lifecycle, migration, and repository intelligence. | Remoto · HTTPVerifica live: ✓ handshake |
| PkgtruthCatches hallucinated and slopsquatted npm and PyPI packages before an agent installs them. | Locale · stdio |
| Plaid MCPQuery Plaid sandbox: institutions, categories, sandbox public tokens. Sandbox only. | Locale · stdio |
| PlainQuery | MCP DB AgentQuery PostgreSQL databases in plain English - LLM-generated, safety-validated SQL. | Remoto · HTTPVerifica live: ✗ nessun handshake |
| Plainsight MCPSearch the Plainsight playbook and review code against proven best practices. | Remoto · HTTPVerifica live: ✗ nessun handshake |
| PlanetScaleConnect to PlanetScale databases, branches, schema, query insights, and execute SQL. | Remoto · HTTPVerifica live: accesso richiesto |