Developer · Local MCP server

Package Guard MCP

Supply-chain guard for AI coding agents: verify packages, check vulns/malware, detect typosquats.

What the MCP Registry states

The entry as published to the official MCP Registry (read 2026-10-04), latest version.

Registry name
io.github.mlawsonking/package-guard-mcp
Version
1.3.0
Status
Active
Category
developer
Transport
stdio (local process)
Package
npm
Published
2026-08-10
Updated
2026-08-10
Publisher
mlawsonking (GitHub) · 7 servers with pages here
Repository
github.com/mlawsonking/MCP (folder package-guard-mcp)
Source
Registry API entry

Packages

RegistryPackageVersionTransportEnvironment variables
npmpackage-guard-mcp1.3.0stdioNone declared

How to connect Package Guard MCP

Package Guard MCP runs locally from a Node.js package published to the npm registry: package-guard-mcp version 1.3.0. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Node.js; clients usually start it with npx — the usual command is npx -y package-guard-mcp@1.3.0.

In the mcpServers JSON format that many desktop and editor MCP clients read, the entry looks like this (placeholders in angle brackets):

{
  "mcpServers": {
    "package-guard-mcp": {
      "command": "npx",
      "args": [
        "-y",
        "package-guard-mcp@1.3.0"
      ]
    }
  }
}

Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect

More from mlawsonking (GitHub)

All 7 →
ServerRunsEndpoint or package
Agent Firewall MCPInput/output safety for AI agents: known-pattern injection and obfuscation scan, URL/IP, secrets.Local · stdionpm: agent-firewall-mcp
Agent GuardsAll six agent guard suites in one local MCP server, with optional cloud intelligence.Local · stdionpm: agent-guards
Code Guard MCPSecurity scan for AI-generated code: injection, SSRF, secrets, weak crypto, unsafe deserialization.Local · stdionpm: @mlawsonking/code-guard-mcp
Email Guard MCPEmail safety for AI agents: scan inbound for prompt-injection/phishing + outbound for secret leaks.Local · stdionpm: email-guard-mcp
Payment Guard MCPPre-send risk check for AI agents that move money — screen an address or payment URL before sending.Local · stdionpm: payment-guard-mcp
Web Tools MCP10 no-LLM web tools: URL to Markdown, metadata, JSON-LD, MX, scrape, RSS, DNS, RDAP, SSL, HTTP.Local · stdionpm: web-tools-mcp

More developer servers

All 6,250 →
ServerRunsEndpoint or package
OwnvoiceWraps the ownvoice CLI as a single generic MCP tool for voice/identity checks.Local · stdioPyPI: ownvoice-cli
OxcodePageRank-curated code intelligence for coding agents over an indexed source repository.Local · stdionpm: @snowmead/oxcode-mcp
Ozon MCP ServerOzon Seller & Performance API, 156 tools; responses trimmed 476k to 64k tokens.Local · stdioPyPI: ozon-mcp-server
Ozon Seller MCP ServerMCP server for Ozon Seller API. 26 tools: products, prices, orders, analytics, finance, rating.Local · stdionpm: @woyax/mcp-ozon-seller
Package Health CheckCheck an npm or Python package, or a package.json, for vulnerabilities and upkeep.Remote · HTTPpackages.openkrill.app
Package Intel MCPPackage intelligence for AI agents across npm, PyPI, crates.io and deps.dev. No API keys.Remote · HTTPpackage.datakoot.com
Package Intel MCPPackage intelligence for AI agents across npm, PyPI, crates.io and deps.dev. No API keys.Remote · HTTPpackage.selflabbs.com
Package Registry MCPLook up npm and PyPI packages: versions, descriptions, and metadata. No key required.Local · stdionpm: @mrfentmen/package-registry-mcp