npm package discovery and stats viewer.

Discover Tips

  • General search

    [free text search, go nuts!]

  • Package details

    pkg:[package-name]

  • User packages

    @[username]

Sponsor

Optimize Toolset

I’ve always been into building performant and accessible sites, but lately I’ve been taking it extremely seriously. So much so that I’ve been building a tool to help me optimize and monitor the sites that I build to make sure that I’m making an attempt to offer the best experience to those who visit them. If you’re into performant, accessible and SEO friendly sites, you might like it too! You can check it out at Optimize Toolset.

About

Hi, 👋, I’m Ryan Hefner  and I built this site for me, and you! The goal of this site was to provide an easy way for me to check the stats on my npm packages, both for prioritizing issues and updates, and to give me a little kick in the pants to keep up on stuff.

As I was building it, I realized that I was actually using the tool to build the tool, and figured I might as well put this out there and hopefully others will find it to be a fast and useful way to search and browse npm packages as I have.

If you’re interested in other things I’m working on, follow me on Twitter or check out the open source projects I’ve been publishing on GitHub.

I am also working on a Twitter bot for this site to tweet the most popular, newest, random packages from npm. Please follow that account now and it will start sending out packages soon–ish.

Open Software & Tools

This site wouldn’t be possible without the immense generosity and tireless efforts from the people who make contributions to the world and share their work via open source initiatives. Thank you 🙏

© 2026 – Pkg Stats / Ryan Hefner

@mcp-guard/cli

v1.1.0

Published

Command-line interface for mcp-guard: scan, fix, and monitor Model Context Protocol (MCP) server configs for security issues.

Readme

@mcp-guard/cli

Command-line interface for MCP-Guard security scanner. Scan MCP server configurations for vulnerabilities, generate reports, and auto-fix security issues.

Installation

npm install -g @mcp-guard/cli
# or
pnpm add -g @mcp-guard/cli

Usage

Basic Scan

# Scan Claude Desktop configuration automatically
mcp-guard scan

# Scan a specific config file
mcp-guard scan config.json

# Scan with specific depth
mcp-guard scan --depth comprehensive

Quick Scan

# Run a quick security check
mcp-guard quick

# Quick scan specific file
mcp-guard quick myconfig.json

Watch Mode

# Monitor configuration for changes
mcp-guard watch

# Check every 60 seconds
mcp-guard watch --interval 60

Auto-Fix Vulnerabilities

# Fix vulnerabilities automatically
mcp-guard fix

# Preview what would be fixed
mcp-guard fix --dry-run

Export Reports

# Export as JSON
mcp-guard scan --format json --output report.json

# Export as Markdown
mcp-guard scan --format markdown --output report.md

# Export as HTML
mcp-guard scan --format html --output report.html

# Export as SARIF (for CI/CD)
mcp-guard scan --format sarif --output report.sarif

Commands

| Command | Description | |---------|-------------| | scan [path] | Scan MCP server configuration for vulnerabilities | | quick [path] | Run a quick security scan | | watch [path] | Watch config files for changes | | fix [path] | Auto-fix vulnerabilities | | list | List available scanners |

Options

scan command

  • -c, --config <path> - Path to MCP config file
  • -d, --depth <level> - Scan depth (quick, standard, comprehensive, paranoid)
  • -f, --format <format> - Output format (console, json, markdown, html, sarif)
  • -o, --output <path> - Output file path
  • --auto-fix - Automatically fix vulnerabilities
  • --no-banner - Hide the banner
  • --quiet - Minimal output

watch command

  • -i, --interval <seconds> - Check interval in seconds (default: 30)

fix command

  • --dry-run - Show what would be fixed without making changes

Examples

Scan Claude Desktop Configuration

mcp-guard scan

Comprehensive Scan with HTML Report

mcp-guard scan --depth comprehensive --format html --output security-report.html

CI/CD Integration

# Generate SARIF report for GitHub Actions
mcp-guard scan --format sarif --output results.sarif --quiet

# Exit with code 1 if critical/high vulnerabilities found
mcp-guard scan || exit 1

Auto-Fix with Preview

# See what would be fixed
mcp-guard fix --dry-run

# Apply fixes
mcp-guard fix

Output Formats

Console (default)

Displays formatted output with colors, tables, and recommendations.

JSON

Complete scan results in JSON format for programmatic processing.

Markdown

Formatted report suitable for documentation or GitHub issues.

HTML

Interactive HTML report with styling and vulnerability details.

SARIF

Static Analysis Results Interchange Format for CI/CD integration.

Exit Codes

  • 0 - No critical or high vulnerabilities found
  • 1 - Critical or high vulnerabilities detected
  • 2 - Configuration or runtime error

License

MIT