PackageGuard MCP server
x402-gated safety checker for npm/PyPI packages before you npm install / pip install.
C67/100grade C
Adoption
New
Little public usage data yet
Reviews
Write oneNobody has reviewed PackageGuard yet.
If you have run it, two minutes of your experience saves the next person an afternoon.
PackageGuard tools (1)
write = sends, deletes, buys or postscheck_package_safetyFreeCheck whether an npm or PyPI package is safe to install. Costs $0.005 USDC via x402 per call.
Public scan report
scanner v0.1.9 · 2026-09-26 · same rubric, same numbers if you re-run it
no findings
- –Code scanremote-only server, no package to scann/a
- Live reliabilityremote reachable in 843ms20/20
- Tool poisoning1 tool descriptions checked15/15
- Auth qualityopen endpoint, read-only tools10/15
- Maintenancerepository not readable: repo not found3/15
- Maintainer identityno repository or website to verify2/10
Overall 67/100. Components that don't apply are left out of the denominator. Any critical finding is an F.RubricAppeal a findingJSON
Install directly
claude mcp add --transport http packageguard https://packageguard-k4s4.onrender.com/mcp
PackageGuard: common questions
- Is PackageGuard MCP server safe?
- With care: it is graded C, so read the findings first (67/100). Read the PackageGuard safety report
- How do I install PackageGuard?
- It runs remotely at packageguard-k4s4.onrender.com. Add it to Claude Code, Claude Desktop or Cursor with the snippets above, or call it through the mcp.market gateway without installing anything.
- Does PackageGuard need an API key?
- Not as far as the registry entry and our scan can tell: no credentials are declared or required.
- Is PackageGuard maintained?
- The latest release is v1.0.0.
- Is PackageGuard up?
- 100% of our last 28 checks got an answer. We check remote servers about four times a day.