
npm Supply Chain Audit
io.github.tylerscomic-labv1.1.0更新於 Oct 2, 2026
Check npm packages for typosquats, hallucinated names, install scripts and risky new releases.
概覽
稽核 npm 的 package.json,找出仿冒套件名稱、可疑安裝指令碼、未固定版本,以及註冊表中的可疑項目。
- 功能
- 這個伺服器提供檢查 npm 相依清單供應鏈風險的工具,而不是通用弱點資料庫查詢。audit_package_json 會完整稽核 package.json,check_package_name 針對單一套件名稱做仿冒檢查,較新的 inspect_package_live 與 audit_dependencies_live 則查詢線上 npm 註冊表。它會標記與高相依量套件名稱編輯距離在 1-2 個字元以內的名稱、把遠端下載直接管線到 shell 或先解碼 base64 內容的安裝鉤子,以及固定為 * 或 latest 的相依項目。線上查詢也會標記不存在、全新且流量低、已棄用或疑似仿冒的套件。
- 適用情境
- 適合在安裝或合併前審查 JavaScript 專案的相依項目、確認助理建議的套件名稱是否真實存在,或在供應鏈事件後清查相依樹。它針對的是 npm 特有的仿冒套件名稱與安裝指令碼風險,而非一般弱點掃描。
- 執行需求
- 託管方式為遠端 streamable HTTP 端點;README 也說明可自行架設,需安裝相依套件並執行 node server.js,因此需要 Node.js。清單未宣告驗證、環境變數或標頭。線上註冊表工具需要連線至 npm 註冊表的網路。README 提到有免費額度與付費 Pro 方案。
安裝
在 SourceWeft 中
- 開啟 儀表板中的 npm Supply Chain Audit,將其新增到工作區。
- 為需要使用其工具的對話啟用該服務。
Web executable,透過 Streamable HTTP。 遠端服務在工作區中設定後即可從網頁執行環境執行。
其他 MCP 客戶端
把它新增到你客戶端的 mcpServers 設定中。
{
"mcpServers": {
"npm-supply-chain-audit-mcp": {
"type": "http",
"url": "https://npm-supply-chain-audit-mcp.mcpize.run/mcp"
}
}
}README
npm-supply-chain-audit-mcp
[License: MIT] [Live on MCPize]
An MCP server that audits package.json for the real mechanisms behind actual npm supply-chain incidents —
typosquatting and malicious install scripts — not a generic vulnerability-database lookup.
What it catches
Typosquatting. Dependency names within 1-2 character edit distance of one of the npm registry's
most-depended-on packages (lodash, express, react, axios, and ~90 others) — the actual real targets of
typosquat campaigns, since attackers go after the packages with the largest install base. lodahs, expres,
reqeust all flag; an unrelated, genuinely distinct package name doesn't.
Malicious install scripts. preinstall/install/postinstall hooks run automatically on npm install,
before any of the package's own code is ever reviewed — the actual delivery mechanism behind real incidents
(event-stream 2018, ua-parser-js 2021, and others since). Flags scripts that pipe a remote download directly
into a shell, and scripts that decode an obfuscated base64 payload before running it.
Unpinned versions. Dependencies on * or latest pull in whatever gets published next, silently, with no
diff in your repo to explain why your dependency tree changed.
Tools
audit_package_json
Full audit of a package.json file.
check_package_name
Focused typosquat check on a single package name.
Use it
Hosted (recommended): MCPize — free tier, $7/mo Pro.
Self-host:
Part of a small suite
secrets-leak-audit-mcp, mcp-trust-audit-mcp, github-actions-audit-mcp, dockerfile-audit-mcp.
License
MIT
Update 1.1.0 (2026-10-01)
- New tools
inspect_package_liveandaudit_dependencies_live: look packages up on the live npm registry. Flags names that do not exist (hallucinated or mistyped), brand-new low-traffic packages, install scripts, deprecated releases and typosquats.
來源:README.md,提交 d9bebba
工具
0版本歷史
1- v1.1.0最新Oct 2, 2026