mcpbeat

Dependency Management MCP Server

com.sonatype/dependency-management-mcp-server
answering

Dependency Management MCP Server is answering right now. Last checked 2 min ago. It exposes 3 tools. Last commit 15 Jan 2026.

Sonatype component intelligence: versions, security analysis, and Trust Score recommendations

Uptime history 40 hours of history
40 hours agonow
100.0%
Uptime 24h
92 of 92 checks
3
Tools
read from the server
410 ms
Response time
average over 24h
73
Stars
last commit 15 Jan 2026

Connect this server

Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 2 min ago.

run in your terminal
claude mcp add dependency-management-mcp-server --transport http https://mcp.guide.sonatype.com/mcp
~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "dependency-management-mcp-server": {
      "url": "https://mcp.guide.sonatype.com/mcp"
    }
  }
}
~/.codex/config.toml
[mcp_servers.dependency-management-mcp-server]
url = "https://mcp.guide.sonatype.com/mcp"
.cursor/mcp.json
{
  "mcpServers": {
    "dependency-management-mcp-server": {
      "url": "https://mcp.guide.sonatype.com/mcp"
    }
  }
}
.vscode/mcp.json
{
  "mcpServers": {
    "dependency-management-mcp-server": {
      "url": "https://mcp.guide.sonatype.com/mcp"
    }
  }
}

Available tools 3

Read directly from the server with tools/list, grouped by what they act on. If a tool disappears, we record the date.

getcomponentversion
getComponentVersion
Returns detailed analysis of a specific dependency or multiple dependencies with metadata about quality, license and security. Dependencies can be referred to as packages, components or libraries. They can be transitive (brought in by other dependencies) or direct (explicitly added to the project).
getlatestcomponentversion
getLatestComponentVersion
Returns the latest version of a dependency or multiple dependencies with quality, license and security data. Dependencies can be referred to as packages, components or libraries. They can be transitive (brought in by other dependencies) or direct (explicitly added to the project).
getrecommendedcomponentversions
getRecommendedComponentVersions
Returns top dependency version recommendations ranked by Developer Trust Score with security, licensing, and quality analysis. Developer Trust Score is a measure of quality, security, licensing, and maintainability. Use this when selecting a new component to add to a project (without version) or when upgrading an existing component (with version). Dependencies can be referred to as packages, components or libraries. They can be transitive (brought in by other dependencies) or direct (explicitly added to the project).

Endpoints

URLTransportStateLatencyChecked
https://mcp.guide.sonatype.com/mcp streamable-http answering 415 ms 2 min ago

Dependency Management MCP Server — questions

Answers built from our own checks of this server.

What can Dependency Management MCP Server do?
It exposes 3 tools, read directly from the server on our last check. Among them: getComponentVersion, getLatestComponentVersion, getRecommendedComponentVersions. The full list with descriptions is on this page — we take it from the server itself via tools/list, not from a README. How MCP servers expose tools in the first place →
Is Dependency Management MCP Server working right now?
We send a real MCP handshake every 15 minutes. Over the last 24 hours 92 of 92 checks got a reply (100.0%), average response time 410 ms. The bar chart above shows every period we have measured.
How do I connect Dependency Management MCP Server?
Copy the ready config from this page — we generate it for Claude Code, Claude Desktop, Codex, Cursor and VS Code, each with the file path that client actually reads. It is a remote server, so there is nothing to install — the client connects to the address.
Does Dependency Management MCP Server need an API key?
No. Dependency Management MCP Server completed a full MCP handshake with us as an anonymous client and listed its tools without asking for anything. All 3 of them are readable on this page. This is what we observed, not what the docs claim.
How fast is Dependency Management MCP Server?
It answers our handshake in 410 ms on average, which is faster than 32% of all working MCP servers we measure. The comparison comes from our own checks across the whole registry, every 15 minutes.
Is Dependency Management MCP Server open source?
Yes — 73 stars on GitHub. The source link is on this page, so you can read exactly what it does with your data before you connect it.