Sviluppo · Server MCP locale
Pkgtruth
Catches hallucinated and slopsquatted npm and PyPI packages before an agent installs them.
Cosa indica il MCP Registry
La voce come pubblicata nel MCP Registry ufficiale (consultazione: 4 ottobre 2026), ultima versione.
- Nome nel registro
io.github.hxckya/pkgtruth- Versione
- 0.2.2
- Stato
- Attivo
- Categoria
- sviluppo
- Trasporto
- stdio (processo locale)
- Pacchetto
- npm
- Pubblicato
- 10 settembre 2026
- Aggiornato
- 10 settembre 2026
- Editore
- hxckya (GitHub)
- Namespace
- Namespace verificato dal MCP Registry tramite GitHub (github.com/hxckya) · come funziona
- Repository
- github.com/hxckya/pkgtruth
- Fonte
- Voce nell’API del registro
Pacchetti
| Registro | Pacchetto | Versione | Trasporto |
|---|---|---|---|
| npm | pkgtruth | 0.2.2 | stdio |
Come collegare Pkgtruth
Pkgtruth viene eseguito in locale a partire da un pacchetto Node.js pubblicato nel registro npm: pkgtruth, versione 0.2.2. Comunica via MCP su stdio, quindi il client lo avvia come programma e dialoga con esso tramite standard input e standard output. Richiede Node.js; i client in genere lo avviano con npx - il comando abituale è npx -y pkgtruth@0.2.2. Legge queste variabili d’ambiente: PKGTRUTH_REGISTRY, PKGTRUTH_DOWNLOADS_API, PKGTRUTH_CACHE_DIR e PKGTRUTH_TIMEOUT_MS; vanno impostate nella configurazione del client per questo server.
Nel formato JSON mcpServers, letto da molti client MCP desktop e per editor di codice, la voce si presenta così (segnaposto tra parentesi angolari):
{
"mcpServers": {
"pkgtruth": {
"command": "npx",
"args": [
"-y",
"pkgtruth@0.2.2"
],
"env": {
"PKGTRUTH_REGISTRY": "<valore>",
"PKGTRUTH_DOWNLOADS_API": "<valore>",
"PKGTRUTH_CACHE_DIR": "<valore>",
"PKGTRUTH_TIMEOUT_MS": "<valore>"
}
}
}
}Ricavato dalla voce del registro, non testato qui. Cosa fa il server, e a quali condizioni, lo stabilisce il suo editore; prima di concedergli l’accesso ai propri account o file conviene consultarne il repository o il sito web. Come aggiungere un server MCP a un assistente · Prima di collegare un server
Altri server della categoria sviluppo
| Server | Esecuzione |
|---|---|
| PixlintLint, curate & prepare computer-vision datasets from your AI assistant - MCP server, 67 tools. | Locale · stdio |
| Pizza DeveloperWork management for AI agents: plan Ideas, Batches and Works, keep context, ship Deliveries. | Remoto · HTTPVerifica live: accesso richiesto |
| pkgproofVerify an npm package before you install it: advisories, install scripts, typosquats, provenance. | Locale · stdio |
| PkgSeek Linux IntelligenceLinux package, file, command, vulnerability, lifecycle, migration, and repository intelligence. | Remoto · HTTPVerifica live: ✓ handshake |
| pkgxrayPre-install security scans for npm packages, MCP servers, and AI agents with cited verdict evidence. | Locale · stdio |
| Plaid MCPQuery Plaid sandbox: institutions, categories, sandbox public tokens. Sandbox only. | Locale · stdio |
| PlainQuery | MCP DB AgentQuery PostgreSQL databases in plain English - LLM-generated, safety-validated SQL. | Remoto · HTTPVerifica live: ✗ nessun handshake |
| Plainsight MCPSearch the Plainsight playbook and review code against proven best practices. | Remoto · HTTPVerifica live: ✗ nessun handshake |