{"package":"@mcp-use/cli","ecosystem":"npm","latest_version":"3.1.2","description":"The mcp-use CLI is a tool for building and deploying MCP servers with support for ChatGPT Apps, Code Mode, OAuth, Notifications, Sampling, Observability and more.","license":"MIT","license_risk":"permissive","commercial_use_notes":"Permissive: commercial closed-source use OK; preserve the copyright notice.","homepage":"https://github.com/mcp-use/mcp-use#readme","repository":"https://github.com/mcp-use/mcp-use","downloads_weekly":43842,"health":{"score":79,"risk":"moderate","breakdown":{"maintenance":25,"popularity":10,"security":25,"maturity":15,"community":4},"deprecated":false,"max_score":100},"vulnerabilities":{"count":0,"critical":0,"high":0,"medium":0,"low":0,"details":[]},"versions":{"latest":"3.1.2","total_count":469,"recent":["3.1.0-canary.5","3.1.0-canary.6","3.1.0-canary.7","3.1.0-canary.8","3.1.0-canary.9","3.1.0","3.1.1-canary.0","3.1.1-canary.1","3.1.1-canary.2","3.1.1-canary.3","3.1.1-canary.4","3.1.1-canary.5","3.1.1-canary.6","3.1.1-canary.7","3.1.1-canary.8","3.1.1","3.1.2-canary.0","3.1.2-canary.1","3.1.2","3.1.3-canary.0"]},"metadata":{"deprecated":false,"deprecated_message":null,"maintainers_count":3,"first_published":"2025-06-27T19:48:31.980Z","last_published":"2026-04-30T09:31:07.170Z","dependencies_count":17,"dependencies":["ws","tar","tsx","zod","open","vite","chalk","dotenv","globby","esbuild","mcp-use","chokidar","commander","@tailwindcss/vite","@mcp-use/inspector","@vitejs/plugin-react","vite-plugin-singlefile"]},"github_stats":null,"bundle":null,"typescript":{"score":0,"has_types":false,"types_source":null,"types_package":null},"known_issues":{"bugs_count":0,"bugs_severity":{},"status_breakdown":{},"link":null,"scope":"none"},"historical_compromise":null,"recommendation":{"action":"safe_to_use","issues":[],"use_version":"3.1.2","version_hint":null,"summary":"@mcp-use/cli@3.1.2 is safe to use (health: 79/100)"},"version_scoped":null,"_meta":{"endpoint":"check","tier":"full","philosophy":"DepScope is free. Use the cheapest endpoint that answers your real question.","cheaper_alternatives":[{"endpoint":"/api/exists/npm/%40mcp-use%2Fcli","tokens_estimated":12,"use_when":"you only need to know if the package exists (hallucination guard)"},{"endpoint":"/api/health/npm/%40mcp-use%2Fcli","tokens_estimated":80,"use_when":"you only need a 0-100 score for go/no-go (>=70 = safe)"},{"endpoint":"/api/prompt/npm/%40mcp-use%2Fcli","tokens_estimated":280,"use_when":"you want a plain-text LLM-friendly brief instead of JSON"},{"endpoint":"POST /api/check_bulk","tokens_estimated":60,"use_when":"you have 5+ packages to check; sends one round-trip instead of N"}],"docs":"https://depscope.dev/integrate"},"requested_version":null,"_cache":"miss","_response_ms":1525,"_powered_by":"depscope.dev — free package intelligence for AI agents","typosquat":{"is_suspected":false},"maintainer_trust":{"available":false},"malicious":{"is_malicious":false,"advisory_id":"MAL-2025-190867","summary":"Malicious code in @mcp-use/cli (npm)","action":"use_with_caution","affected_versions":["2.2.6","2.2.7"],"latest_version_safe":true,"note":"Advisory MAL-2025-190867: versions 2.2.6, 2.2.7 are compromised. Current latest (3.1.2) is safe."},"scorecard":{"available":false},"quality":{"available":false},"version_history_summary":{"total_versions":20,"first_release_age_days":309,"last_release_days_ago":2,"avg_days_between_releases":16,"release_velocity":"active"}}