npm Supply Chain Audit

io.github.tylerscomic-labv1.1.0更新於 Oct 2, 2026

Check npm packages for typosquats, hallucinated names, install scripts and risky new releases.

已驗證Streamable HTTP可網頁執行Security & MonitoringDeveloper Tools

概覽

AI 產生的概覽

稽核 npm 的 package.json,找出仿冒套件名稱、可疑安裝指令碼、未固定版本,以及註冊表中的可疑項目。

功能
這個伺服器提供檢查 npm 相依清單供應鏈風險的工具,而不是通用弱點資料庫查詢。audit_package_json 會完整稽核 package.json,check_package_name 針對單一套件名稱做仿冒檢查,較新的 inspect_package_live 與 audit_dependencies_live 則查詢線上 npm 註冊表。它會標記與高相依量套件名稱編輯距離在 1-2 個字元以內的名稱、把遠端下載直接管線到 shell 或先解碼 base64 內容的安裝鉤子,以及固定為 * 或 latest 的相依項目。線上查詢也會標記不存在、全新且流量低、已棄用或疑似仿冒的套件。
適用情境
適合在安裝或合併前審查 JavaScript 專案的相依項目、確認助理建議的套件名稱是否真實存在,或在供應鏈事件後清查相依樹。它針對的是 npm 特有的仿冒套件名稱與安裝指令碼風險,而非一般弱點掃描。
執行需求
託管方式為遠端 streamable HTTP 端點;README 也說明可自行架設,需安裝相依套件並執行 node server.js,因此需要 Node.js。清單未宣告驗證、環境變數或標頭。線上註冊表工具需要連線至 npm 註冊表的網路。README 提到有免費額度與付費 Pro 方案。
安裝前請注意
線上工具會把套件名稱傳送到公開的 npm 註冊表。README 提到付費 Pro 方案,使用託管端點前請確認價格。稽核結果是啟發式標記,並不證明存在惡意,採取行動前應自行查證。

安裝

在 SourceWeft 中

  1. 開啟 儀表板中的 npm Supply Chain Audit,將其新增到工作區。
  2. 為需要使用其工具的對話啟用該服務。

Web executable,透過 Streamable HTTP。 遠端服務在工作區中設定後即可從網頁執行環境執行。

其他 MCP 客戶端

把它新增到你客戶端的 mcpServers 設定中。

{
  "mcpServers": {
    "npm-supply-chain-audit-mcp": {
      "type": "http",
      "url": "https://npm-supply-chain-audit-mcp.mcpize.run/mcp"
    }
  }
}

README

npm-supply-chain-audit-mcp

[License: MIT] [Live on MCPize]

An MCP server that audits package.json for the real mechanisms behind actual npm supply-chain incidents — typosquatting and malicious install scripts — not a generic vulnerability-database lookup.

What it catches

Typosquatting. Dependency names within 1-2 character edit distance of one of the npm registry's most-depended-on packages (lodash, express, react, axios, and ~90 others) — the actual real targets of typosquat campaigns, since attackers go after the packages with the largest install base. lodahs, expres, reqeust all flag; an unrelated, genuinely distinct package name doesn't.

Malicious install scripts. preinstall/install/postinstall hooks run automatically on npm install, before any of the package's own code is ever reviewed — the actual delivery mechanism behind real incidents (event-stream 2018, ua-parser-js 2021, and others since). Flags scripts that pipe a remote download directly into a shell, and scripts that decode an obfuscated base64 payload before running it.

Unpinned versions. Dependencies on * or latest pull in whatever gets published next, silently, with no diff in your repo to explain why your dependency tree changed.

Tools

audit_package_json

Full audit of a package.json file.

check_package_name

Focused typosquat check on a single package name.

Use it

Hosted (recommended): MCPize — free tier, $7/mo Pro.

Self-host:

bash
npm installnode server.js

Part of a small suite

secrets-leak-audit-mcp, mcp-trust-audit-mcp, github-actions-audit-mcp, dockerfile-audit-mcp.

License

MIT

Update 1.1.0 (2026-10-01)

  • New tools inspect_package_live and audit_dependencies_live: look packages up on the live npm registry. Flags names that do not exist (hallucinated or mistyped), brand-new low-traffic packages, install scripts, deprecated releases and typosquats.

來源:README.md,提交 d9bebba

工具

0
工具後設資料尚未被收錄。

版本歷史

1
  1. v1.1.0最新Oct 2, 2026