{"name":"io.github.mattpicone/upgradelens","slug":"mattpicone-upgradelens","title":"UpgradeLens","description":"npm/PyPI/Django dependency upgrades: security, runtime compatibility, migration, package ranking.","url":"https://mcp.market/server/mattpicone-upgradelens","rating":null,"grade":"C","score":67,"certified":false,"status":"active","category":"security","tags":["security"],"presence":{"score":8,"stars":null,"forks":null,"downloads_week":null,"last_push_at":null,"license":null},"claimed":false,"transport":"remote","callable_via_gateway":true,"default_price_micros":0,"repository":"https://github.com/mattpicone/upgradelens","website":"https://upgradelens.mattpicone.workers.dev","version":"0.4.4","remotes":[{"type":"streamable-http","url":"https://upgradelens.mattpicone.workers.dev/mcp"}],"packages":[],"tools":[{"name":"check_dependency_upgrade","description":"Use when a coding agent needs a cited go/no-go risk decision without steps before changing an existing npm or PyPI dependency between two exact versions. Returns action_allowed, vulnerability delta, compatibility, EOL, and breaking-change evidence. Use plan_dependency_upgrade instead for ordered migration work. Do not use to choose a target, install a new package, search general docs, or analyze another ecosystem. Read-only and safe to retry.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{"ecosystem":{"type":"string","enum":["npm","pypi"],"description":"Package ecosystem. Only npm and pypi are supported."},"package":{"type":"string","maxLength":214,"description":"Exact registry package name."},"current_version":{"type":"string","maxLength":64,"description":"Exact installed version."},"target_version":{"type":"string","maxLength":64,"description":"Exact candidate version."},"runtime":{"type":"object","additionalProperties":false,"properties":{"node":{"type":"string"},"python":{"type":"string"}}}},"required":["ecosystem","package","current_version","target_version"],"additionalProperties":false}},{"name":"find_safe_upgrade_target","description":"Use only when an existing npm or PyPI dependency has an exact current version but no chosen target. Ranks candidates; candidates are not declared safe and require check_dependency_upgrade or plan_dependency_upgrade. Do not use when a target is stated, for a new install, or as authorization to edit files. Read-only and safe to retry.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{"ecosystem":{"type":"string","enum":["npm","pypi"],"description":"Package ecosystem. Only npm and pypi are supported."},"package":{"type":"string","maxLength":214,"description":"Exact registry package name."},"current_version":{"type":"string","maxLength":64,"description":"Exact installed version."},"max_major_jump":{"type":"integer","minimum":0,"description":"Optional major-version jump cap. 0 = stay in the same major."},"allow_prerelease":{"type":"boolean"}},"required":["ecosystem","package","current_version"],"additionalProperties":false}},{"name":"plan_dependency_upgrade","description":"Use when a coding agent needs a migration checklist, refactor actions, ordered review actions, changelog links, or test steps for exact current and target npm/PyPI versions. Use check_dependency_upgrade instead for a go/no-go without steps. Do not use to choose a target, install a package, or provide a general tutorial. Read-only and safe to retry.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{"ecosystem":{"type":"string","enum":["npm","pypi"],"description":"Package ecosystem. Only npm and pypi are supported."},"package":{"type":"string","maxLength":214,"description":"Exact registry package name."},"current_version":{"type":"string","maxLength":64,"description":"Exact installed version."},"target_version":{"type":"string","maxLength":64,"description":"Exact candidate version."},"runtime":{"type":"object","additionalProperties":false,"properties":{"node":{"type":"string"},"python":{"type":"string"}}}},"required":["ecosystem","package","current_version","target_version"],"additionalProperties":false}},{"name":"review_dependency_upgrade","description":"Use when an agent reviews a Dependabot, Renovate, npm, or PyPI version change before merge. One cited result combines security delta, runtime compatibility, breaking changes, go/no-go risk, and ordered migration actions for exact current and target versions. Do not use for new installs, unknown versions, general documentation, or other ecosystems. Read-only and safe to retry.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{"ecosystem":{"type":"string","enum":["npm","pypi"],"description":"Package ecosystem. Only npm and pypi are supported."},"package":{"type":"string","maxLength":214,"description":"Exact registry package name."},"current_version":{"type":"string","maxLength":64,"description":"Exact installed version."},"target_version":{"type":"string","maxLength":64,"description":"Exact candidate version."},"runtime":{"type":"object","additionalProperties":false,"properties":{"node":{"type":"string"},"python":{"type":"string"}}},"detail":{"type":"string","enum":["compact","full"],"default":"compact","description":"compact is optimized for agent decisions; full includes the complete legacy plan payload."}},"required":["ecosystem","package","current_version","target_version"],"additionalProperties":false}}],"scan":{"score":67,"grade":"C","scanned_at":"2026-09-19T10:15:18.209Z","report":{"scannerVersion":"0.1.3","scannedAt":"2026-09-19T10:15:18.187Z","components":{"code":{"score":-1,"max":25,"notes":["remote-only server, no package to scan"]},"reliability":{"score":20,"max":20,"notes":["remote reachable in 361ms"]},"poisoning":{"score":15,"max":15,"notes":["4 tool descriptions checked"]},"auth":{"score":10,"max":15,"notes":["open endpoint, read-only tools"]},"maintenance":{"score":3,"max":15,"notes":["repository not readable: repo not found"]},"identity":{"score":2,"max":10,"notes":["no repository or website to verify"]}},"findings":[],"inputs":{"probes":[{"url":"https://upgradelens.mattpicone.workers.dev/mcp","reachable":true,"authRequired":false,"latencyMs":361,"serverInfo":{"name":"upgradelens","version":"0.4.4"}}],"packages":[],"repo":{"found":false,"owner":"mattpicone","repo":"upgradelens","error":"repo not found"},"icon":{"url":null,"source":"none"},"presence":{"stars":null,"forks":null,"downloadsWeek":null,"license":null,"lastPushAt":null,"score":8}}}},"grade_history":[],"reviews":[]}