MCP Tools Directory
← Browse integrations

Developer tools

GhostFree

Free account · sign-in required

Contact GhostFree

Loading secure sign-in…

Tools for autonomous AI agents

About this integration

MCP server that scans your repo's dependencies for security vulnerabilities based on published CVEs.

Transport
stdio
Authentication
none
Initial setup
none
Runtime
unattended
Evidence
documented
Version
0.2.0
Package
ghostfree
Last compatibility test
Not independently tested

Connect your agent

ghostfree

Publisher documentation and manifest were reviewed; the package and vulnerability services were not executed. Scans require OSV network access. NVD authentication is optional for higher rate limits, and accepted-risk tools write to a repository-local file.

Capabilities: Discover dependencies across supported project manifests, Check packages against OSV vulnerability data, Enrich CVEs with NVD and CISA KEV data, Record expiring accepted-risk decisions

Connected profiles

Additional details

Registry identifier

io.github.shane-js/ghostfree

Source ↗ · Checked 2026-09-17
Published version

0.2.0

Source ↗ · Checked 2026-09-17
Metadata license

CC0-1.0; package licenses are separate

Source ↗ · Checked 2026-09-17
Package ecosystem

npm

Source ↗ · Checked 2026-09-17
Source artifact

ghostfree

Source ↗ · Checked 2026-09-19
Source manifest version

0.2.0

Source ↗ · Checked 2026-09-19
Unattended configuration

The publisher provides explicit stdio MCP configurations that launch the package with a repository path.

Source ↗ · Checked 2026-09-19
Authentication and prerequisites

OSV requires no authentication and NVD works at a lower rate without an optional API key.

Source ↗ · Checked 2026-09-19
Connection configuration

Configure the MCP client to launch npx -y ghostfree with --repo-path for the target repository.

Source ↗ · Checked 2026-09-19
Review scope

Publisher documentation reviewed; package and integration endpoint not executed or independently security-audited.

Source ↗ · Checked 2026-09-19