mcpbeat Sign in

npm Plus MCP Server

local only

npm Plus runs on your own machine — the client starts it, so there is no endpoint to ping. 47 installs a week from npm. Last commit 10 Mar 2026.

npm MCP — search packages, bundle sizes, vulnerabilities, compare downloads.

Installs per day peak 14 · avg 7 · -33% w/w
a month agotoday
47
Installs / week
npm · mcp-server-npm-plus
1
Stars
0 open issues
10 Mar 2026
Last commit
0 releases in 90 days
MIT
License
TypeScript

Nothing serious here today

Today is the operative word: we check npm Plus every 15 minutes and re-read its code on every release. Watch it and you find out the day that stops being true.

Three servers free · no card

Connect this server

This server runs on your own machine — install it with the package manager and the client starts it for you. Package name taken from the official registry entry.

run in your terminal
claude mcp add npm-plus -- npx -y mcp-server-npm-plus
~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "npm-plus": {
      "args": [
        "-y",
        "mcp-server-npm-plus"
      ],
      "command": "npx"
    }
  }
}
~/.codex/config.toml
[mcp_servers.npm-plus]
command = "npx"
args = ["-y", "mcp-server-npm-plus"]
.cursor/mcp.json
{
  "mcpServers": {
    "npm-plus": {
      "args": [
        "-y",
        "mcp-server-npm-plus"
      ],
      "command": "npx"
    }
  }
}
.vscode/mcp.json
{
  "mcpServers": {
    "npm-plus": {
      "args": [
        "-y",
        "mcp-server-npm-plus"
      ],
      "command": "npx"
    }
  }
}

Alternatives to npm Plus

same job, measured the same way
Osv
by pipeworx-io

OSV.dev (Open Source Vulnerabilities) MCP.

35 tools answering
Osv Advisory MCP Server
by cyanheads

Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.

101 installs/wk 4 tools answering
Vanta
by mindstone

Vanta compliance MCP server: vulnerabilities, tests, controls, evidence, people, vendors, docs

86 installs/wk local only
Seal Security
by sealsecurity

Vulnerability management: scan projects, search sealed packages, manage sealing rules and reports.

answering
NPMScan
by salemalem

Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups

23 tools answering
Agent Security Scanner MCP
by sinewaveai

Security layer for AI agents: blocks prompt injection, detects fake packages, scans vulnerabilities.

728 installs/wk local only
Bug Detector
by madhavi-opsera

Analyzes code for bugs, security vulnerabilities, and code smells

local only
Fetter MCP
by fetter-io

Real-time Python package and vulnerability data for AI coding agents.

3 tools answering

npm Plus — questions

Answers built from our own checks of this server.

Why is there no uptime for npm Plus?
npm Plus runs on your own machine over stdio — there is no network address to reach, so uptime cannot be measured for it by anyone. What can be measured is adoption: the npm package mcp-server-npm-plus was installed 47 times last week.
How do I connect npm Plus?
Copy the ready config from this page — we generate it for Claude Code, Claude Desktop, Codex, Cursor and VS Code, each with the file path that client actually reads. It runs locally, so the command pulls mcp-server-npm-plus straight from npm; nothing to host, nothing to sign up for.
How many people use npm Plus?
The npm package mcp-server-npm-plus was installed 47 times in the last week. Week over week that is -33%. We show installs rather than GitHub stars on purpose: a star is a bookmark, an install is someone actually running it.
Is npm Plus open source?
Yes — it is published under the MIT licence, written in TypeScript and 1 stars on GitHub. The source link is on this page, so you can read exactly what it does with your data before you connect it.