MCP Server

@considered/harmful

by considered

Most [MCP servers](https://github.com/modelcontextprotocol/servers) suggest using `npx -y` as the recommended way to install a server. This downloads and executes arbitrary scripts from the internet. This is grossly insecure and I think the MCP authors sh

5 npm/wkStalejavascript
Not scored

📊 Score Breakdown

🛡️Security30%
/5
Utility30%
/5
🔄Maintenance25%
/5
💎Uniqueness15%
/5

Overall = Security (30%) + Utility (30%) + Maintenance (25%) + Uniqueness (15%). Full methodology →

ℹ️ Details

Category

💻 Code Execution & Dev Tools

Ecosystem

MCP Server

Language

javascript

Pricing

Free

License

ISC

Status

Stale

Platforms

claude

npm Version

1.0.3

mcpnpm

The Weekly Index 📬

New MCP servers, Claude skills, stale alerts, and picks — every Thursday.

Data last verified: 1 months ago. See something wrong? Report it →