{"repo":"SocketDev/socket-mcp","free":true,"listed":false,"github":"https://github.com/SocketDev/socket-mcp","clone":"git clone https://github.com/SocketDev/socket-mcp.git","description":"Model Context Protocol server for socket.dev integration","language":"TypeScript","stars":126,"topics":[],"license":"MIT","category":"mcp-servers","readme_excerpt":"Socket MCP Server A Model Context Protocol (MCP) server for Socket integration - lets AI assistants query dependency vulnerability scores and security metadata. Socket MCP exposes Socket.dev's package-scoring API through the Model Context Protocol, so any MCP-aware AI assistant (Claude, VS Code Copilot, Cursor, Windsurf) can score a package, audit a package.json , or flag risky dependencies as part of a conversation. It ships as both a hosted public server ( https://mcp.socket.dev/ , no setup) and a self-hostable npm package, so you can choose between zero-friction and full data isolation. ✨ Features - 🔍 Dependency Security Scanning - Get comprehensive security scores for npm, PyPI, cargo, Maven, NuGet, RubyGems, Go Modules, and more (supported ecosystems) - 🌐 Public Hosted Service - Use our public server at https://mcp.socket.dev/ ; sign in once via OAuth, no self-hosting - 🚀 Multiple Deployment Options - Run locally via stdio, HTTP, or use our service - 🤖 AI Assistant Integration - Works seamlessly with Claude, VS Code Copilot, Cursor, and other MCP clients - 📊 Batch Processing - Check multiple dependencies in a single request - 🔒 OAuth Sign-In - Public server authenticates through your MCP client's OAuth flow; no API key to copy or manage 🛠️ This project is in early development and rapidly evolving. Install Option 1: Use the public Socket MCP server (recommended) The easiest way to get started. The public server uses OAuth - your MCP client opens a browser to sign i","default_branch":null,"files":null,"tree":[],"storefront":"/r/SocketDev","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/SocketDev/socket-mcp/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}