scan_package
2 registry entries were observed exposing a tool named scan_package — none of them flagged as a privileged capability.
Every row is point-in-time scan output, dated below. Forge has an observed tool surface for 8,470 of 26,658 scannable entries (32%) — an entry that has not been scanned cannot appear here, so absence from this list is not evidence that an entry does not expose this tool.
- MCP serverobserved · static extractionEvidence-first npm package and project dependency checks for developers, coding agents, and MCP clients before code executes.
- MCP serverobserved · static extractionMCP security trust layer: scan packages, inspect repos, check exposure, monitor changes.