"PyPI" matching MCP connectors:
GET /v1/connectors — MCP directory API referenceMatching Connector Tools:
Translates a lockfile diff into a human-readable upgrade plan for npm, PyPI, and GitHub Actions.
211Blocks typosquatted or hallucinated npm/PyPI packages before an AI agent installs them.
11npm/PyPI dependency upgrades: package security, compatibility, target ranking, and migration plans.
Package intelligence for AI agents across npm, PyPI, crates.io and deps.dev. No API keys.
61Check if a dependency's license obligates you, based on how you ship. npm, PyPI, Go.
Check exact npm/PyPI upgrades for evidence-backed breaking changes; query APIs and components.
New PyPI package releases and Python dependency updates, hourly from PyPI RSS.
161PyPI MCP — wraps the Python Package Index (PyPI) JSON API (free, no auth).
Verify PyPI and npm packages, symbols, and version diffs against real artifacts. Free, no account.
Dev-registry data: npm/PyPI/Docker/VS Code packages, dep graphs, vulns, 50+ ecosystems.
Check if a brand name is free across domains, GitHub, npm and PyPI, and suggest available names.
check-package: block malicious npm/PyPI deps before your AI agent installs them. Free, no key.
Supply chain risk scoring for npm, PyPI, Cargo, and Go. 9 tools. Behavioral signals.
x402-gated safety checker for npm and PyPI packages. Built for AI coding agents to call before running npm install or pip install — flags nonexistent/typosquatted names, known CVEs (OSV.dev), and suspiciously new or low-download packages. $0.005 USDC per check on Base mainnet
x402-gated safety checker for npm/PyPI packages before you npm install / pip install.
Search GitHub, npm, PyPI, StackOverflow, ArXiv from one MCP — built for coding agents.
Docs for hot-module-reload and reactive programming for Python (`hmr` on PyPI)
Pre-build reality check for AI coding agents. Scans GitHub, Hacker News, npm, PyPI & Product Hunt — returns a 0-100 reality signal before you build. Supports quick (2 sources) and deep (5 sources) parallel search.
Protects AI coding agents from installing malicious open source packages. Every npm and PyPI package is checked against SafeDep’s real-time threat intelligence before installation.
Change intelligence for coding agents: sourced breaking changes for npm, PyPI, and Rust packages.