npm package discovery and stats viewer.

Discover Tips

  • General search

    [free text search, go nuts!]

  • Package details

    pkg:[package-name]

  • User packages

    @[username]

Sponsor

Optimize Toolset

I’ve always been into building performant and accessible sites, but lately I’ve been taking it extremely seriously. So much so that I’ve been building a tool to help me optimize and monitor the sites that I build to make sure that I’m making an attempt to offer the best experience to those who visit them. If you’re into performant, accessible and SEO friendly sites, you might like it too! You can check it out at Optimize Toolset.

About

Hi, 👋, I’m Ryan Hefner  and I built this site for me, and you! The goal of this site was to provide an easy way for me to check the stats on my npm packages, both for prioritizing issues and updates, and to give me a little kick in the pants to keep up on stuff.

As I was building it, I realized that I was actually using the tool to build the tool, and figured I might as well put this out there and hopefully others will find it to be a fast and useful way to search and browse npm packages as I have.

If you’re interested in other things I’m working on, follow me on Twitter or check out the open source projects I’ve been publishing on GitHub.

I am also working on a Twitter bot for this site to tweet the most popular, newest, random packages from npm. Please follow that account now and it will start sending out packages soon–ish.

Open Software & Tools

This site wouldn’t be possible without the immense generosity and tireless efforts from the people who make contributions to the world and share their work via open source initiatives. Thank you 🙏

© 2026 – Pkg Stats / Ryan Hefner

misterpropre

v1.0.0

Published

Mr. Clean for dependencies — a bilingual CLI that automates Dependabot/Renovate security fixes and bot-PR triage across your repos, via Claude Code or Kiro.

Readme

misterpropre

Mr. Clean for dependencies — a bilingual (🇫🇷/🇬🇧) CLI that automates Dependabot/Renovate security fixes and bot-PR triage across your repos, driven by an AI coding agent (Claude Code or Kiro).

misterpropre (mrp) wraps two workflows and runs them, unattended, over one repo or many:

  • Security fixes — resolve open Dependabot security alerts and open a PR for review.
  • Renovate/Dependabot triage — review the bot PRs, merge the safe ones, hand off the rest.

It runs each repo in an isolated git worktree, shows a live progress grid, and can run on a native daily schedule.

⚠️ It acts on your behalf. A real AI agent opens PRs and merges bot PRs in the repos you point it at. Start with a single repo and review what it does before trusting it broadly.

Requirements

  • Node.js ≥ 20
  • GitHub CLI (gh), authenticated (gh auth status)
  • One agent provider, installed and logged in:

Install

npm install -g misterpropre

Quick start

mrp            # interactive dashboard (first run walks you through setup)
mrp setup      # onboarding, or edit your config inline
mrp doctor     # check that your toolchain is ready

From the dashboard you can run a security pass, a Renovate/Dependabot pass, or both, on all your configured repos or a single one (toggle with Ctrl+Tab), and schedule a daily run.

Commands

| Command | What it does | | --- | --- | | mrp | Interactive dashboard (on a TTY) | | mrp run [repos…] | Run a pass. --phase fix\|purge\|both, --all, --provider claude\|kiro | | mrp schedule set\|status\|clear | Native daily schedule (launchd, macOS) | | mrp setup | First-run onboarding, or inline config editor | | mrp login <claude\|kiro> | Install (if needed) + log in to a provider | | mrp config show\|path\|init | View / locate / initialise the config | | mrp config secrets list\|set\|rm | Manage stored secrets (chmod-600, separate from config) | | mrp skills status\|install | Manage the bundled agent skills | | mrp doctor | Verify the local toolchain |

Configuration

Config lives at ~/.config/misterpropre/config.json (honours XDG_CONFIG_HOME) and holds your language, GitHub org, where your repos are cloned, the chosen repos, the provider, and the schedule. Secrets (optional tokens, notification creds) are stored separately with 600 permissions. Edit everything inline with mrp setup.

Scheduling

mrp schedule set --time HH:MM installs a daily LaunchAgent (macOS) that runs the automation unattended and logs to ~/.config/misterpropre/schedule.log. mrp schedule clear removes it. You can also configure it from the dashboard ("Schedule daily run").

Develop

npm install
npm run dev -- doctor     # run from source
npm run build             # bundle to dist/
npm test                  # unit tests
npm run typecheck         # tsc --noEmit

Built around two bundled skills (security-dependabot-fix, dependabot-purge) driven headlessly through a provider adapter.

License

MIT © Ayman Kahya