OSV Advisories runs on your own machine — the client starts it, so there is no endpoint to ping. Last commit 9 Oct 2026.
Query OSV.dev for known vulnerabilities by package and version, and scan lockfiles in batch.
Today is the operative word: we check OSV Advisories every 15 minutes and re-read its code on every release. Watch it and you find out the day that stops being true.
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
Scan packages and lockfiles (npm, PyPI, Go, Maven, Cargo, NuGet) for vulnerabilities and malware.
Known vulnerabilities for exact package versions from OSV, with fixes. Paid per call, x402.
Security layer for AI agents: blocks prompt injection, detects fake packages, scans vulnerabilities.
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Dependency vulns & malicious-package advisories. Register in-session — free testnet funds.
CERT-FR (ANSSI) security advisories & alerts: French national CERT vulnerability feed, hourly
Security scanner for MCP servers and skill files. Detects AVE vulnerabilities before production.
Answers built from our own checks of this server.