Server data from the Official MCP Registry
npm MCP — search packages, bundle sizes, vulnerabilities, compare downloads.
npm MCP — search packages, bundle sizes, vulnerabilities, compare downloads.
Valid MCP server (2 strong, 4 medium validity signals). 2 known CVEs in dependencies Package registry verified. Imported from the Official MCP Registry. Trust signals: trusted author (22/23 approved).
8 files analyzed · 3 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-ofershap-npm-plus": {
"args": [
"-y",
"mcp-server-npm-plus"
],
"command": "npx"
}
}
}From the project's GitHub README.
npm package research from your AI assistant. Search packages, check bundle sizes, scan for vulnerabilities, compare download counts, and inspect dependency trees. No API keys needed.
npx mcp-server-npm-plus
Works with Claude Desktop, Cursor, VS Code Copilot, and any MCP client. Uses public npm registry APIs.

Demo built with remotion-readme-kit
Choosing between npm packages usually means opening a bunch of browser tabs: npm for package info, Bundlephobia for size, Snyk for vulnerabilities, npm trends for download comparisons. This server puts all of that in one place, accessible through your AI assistant. Ask "compare zustand vs jotai vs valtio" and get download numbers, bundle sizes, and dependency counts side by side. Ask "are there any known vulnerabilities in express?" and get the answer without leaving your editor. It uses only public npm APIs, so there's nothing to sign up for.
| Tool | Description |
|---|---|
search | Search npm packages by query |
package_info | Get detailed info: description, license, repo, dependencies |
downloads | Get download stats for a package |
compare_downloads | Compare download counts across multiple packages |
bundle_size | Get bundle size (minified + gzip) via Bundlephobia |
vulnerabilities | Get vulnerability info and advisory links |
dependency_tree | Show direct dependencies as a tree |
download_trends | Daily breakdown with sparkline |
Add to .cursor/mcp.json:
{
"mcpServers": {
"npm-plus": {
"command": "npx",
"args": ["mcp-server-npm-plus"]
}
}
}
Add to claude_desktop_config.json:
{
"mcpServers": {
"npm-plus": {
"command": "npx",
"args": ["mcp-server-npm-plus"]
}
}
}
Use the MCP extension and configure the server with npx mcp-server-npm-plus.
npm install
npm run typecheck
npm run build
npm test
npm run lint
npm run format
More MCP servers and developer tools on my portfolio.
README built with README Builder
MIT © 2026 Ofer Shapira
Be the first to review this server!
by Modelcontextprotocol · Developer Tools
Read, search, and manipulate Git repositories programmatically
by Toleno · Developer Tools
Toleno Network MCP Server — Manage your Toleno mining account with Claude AI using natural language.
by mcp-marketplace · Developer Tools
Create, build, and publish Python MCP servers to PyPI — conversationally.