npm package discovery and stats viewer.

Discover Tips

  • General search

    [free text search, go nuts!]

  • Package details

    pkg:[package-name]

  • User packages

    @[username]

Sponsor

Optimize Toolset

I’ve always been into building performant and accessible sites, but lately I’ve been taking it extremely seriously. So much so that I’ve been building a tool to help me optimize and monitor the sites that I build to make sure that I’m making an attempt to offer the best experience to those who visit them. If you’re into performant, accessible and SEO friendly sites, you might like it too! You can check it out at Optimize Toolset.

About

Hi, 👋, I’m Ryan Hefner  and I built this site for me, and you! The goal of this site was to provide an easy way for me to check the stats on my npm packages, both for prioritizing issues and updates, and to give me a little kick in the pants to keep up on stuff.

As I was building it, I realized that I was actually using the tool to build the tool, and figured I might as well put this out there and hopefully others will find it to be a fast and useful way to search and browse npm packages as I have.

If you’re interested in other things I’m working on, follow me on Twitter or check out the open source projects I’ve been publishing on GitHub.

I am also working on a Twitter bot for this site to tweet the most popular, newest, random packages from npm. Please follow that account now and it will start sending out packages soon–ish.

Open Software & Tools

This site wouldn’t be possible without the immense generosity and tireless efforts from the people who make contributions to the world and share their work via open source initiatives. Thank you 🙏

© 2026 – Pkg Stats / Ryan Hefner

smart-ui-validator-mcp

v0.5.2

Published

Approval-gated stdio MCP server for Smart UI generation, deterministic validation, bounded implementation handoff, reports, and governed memory.

Readme

Smart UI Validator MCP server

The production entry point is smart-ui-mcp over stdio. The server intentionally does not expose a generic shell tool. Mutating operations require explicit approval fields and remain constrained by the same exact path, command, endpoint, pass, timeout, and evidence policies as the CLI.

Requirements

  • Node.js 22.16 or newer.
  • Playwright Chromium compatible with the package's pinned Playwright version.
  • One exact trusted target workspace root.

Usage

An MCP host can start the published server with:

command: npx
args: -y [email protected]
cwd: <absolute-target-project>

Production desktop builds do not use npx; they bundle the exact package and a private Node runtime.

The server publishes capabilities, validation and SVG-generation guides, paged run/generation resources, implement-and-validate and generate-from-svg prompts, and approval-annotated tools. Set SMART_UI_MCP_ROOT when the host cannot supply the exact target as cwd. Never set the root to a drive, home directory, or another broad shared path.

Compact validation results retain representative DOM locators and expected/actual values. get_findings provides filtered pagination when more evidence is needed. For general repairs, the host agent supplies an explicitly approved full-file proposedChanges batch to repair_component; the server applies it once, runs configured checks, revalidates in Chromium, and rolls it back when it regresses. Calls without proposedChanges use the intentionally narrow background-color fallback.

Repository-free SVG generation uses five additive tools: inspect_svg, generate_html_from_svg, get_generation, get_generation_report, and export_generation. Inspection and generation create only new core-owned per-run artifacts. An optional approved host proposal is parsed and policy-checked, rendered with network blocked, measured by the core, and kept only when it does not regress the deterministic fallback. Export is never implied by generation; it requires the accepted manifest hash, the exact complete path list, an exact new empty destination, and a separate approval.

Persistent generation and existing-UI implementation handoffs use list_handoff_tasks, get_handoff_task, read_handoff_evidence, submit_handoff_generation, and submit_handoff_implementation. Submissions require the exact task hash and revision plus explicit approval, and create the same immutable deterministic review attempts as the CLI and Studio.

After pnpm build, pnpm test:mcp:stdio performs a real SDK stdio handshake against the built server and verifies all five generation tools, the guide, the paged context resource, and the prompt.

The package documentation covers host configuration, tool schemas, workflow setup, and security guidance without requiring personal repository metadata.