このMCPでできること
Analyzes npm, PyPI, and GitHub Actions dependency upgrades for semver changes, breaking changes, security fixes, and migration guidance.
ツール
入力スキーマ
{'type': 'object', '$schema': 'http://json-schema.org/draft-07/schema#', 'required': ['ecosystem', 'name', 'fromVersion', 'toVersion'], 'properties': {'name': {'type': 'string', 'minLength': 1, 'description': "Package name (e.g. 'react', 'requests')"}, 'ecosystem': {'enum': ['npm', 'pypi', 'github-actions'], 'type': 'string', 'description': 'Package ecosystem'}, 'toVersion': {'type': 'string', 'minLength': 1, 'description': "Target version (e.g. '19.0.0')"}, 'fromVersion': {'type': 'string', 'minLength': 1, 'description': "Current version (e.g. '18.2.0')"}}}
出力スキーマ
{'type': 'object', '$schema': 'http://json-schema.org/draft-07/schema#', 'required': ['package', 'ecosystem', 'fromVersion', 'toVersion', 'semverClass', 'repoUrl', 'releaseCount', 'breakingChanges', 'securityFixes', 'migrationLinks', 'recommendation', 'recommendationLevel'], 'properties': {'package': {'type': 'string', 'description': 'Package name that was analyzed'}, 'repoUrl': {'type': ['string', 'null'], 'description': 'Source repository URL, or null when none could be resolved'}, 'ecosystem': {'enum': ['npm', 'pypi', 'github-actions'], 'type': 'string', 'description': 'Package ecosystem'}, 'toVersion': {'type': 'string', 'description': 'Version being upgraded to'}, 'fromVersion': {'type': 'string', 'description': 'Version being upgraded from'}, 'semverClass': {'enum': ['major', 'minor', 'patch', 'downgrade', 'unknown'], 'type': 'string', 'description': 'Semver relationship between the two versions'}, 'releaseCount': {'type': 'number', 'description': 'Number of GitHub releases found strictly between the two versions'}, 'securityFixes': {'type': 'array', 'items': {'type': 'object', 'required': ['id', 'summary', 'severity'], 'properties': {'id': {'type': 'string', 'description': "Advisory identifier (e.g. 'GHSA-29mw-wpgm-hmr9' or a CVE)"}, 'summary': {'type': 'string', 'description': 'One-line description of the advisory'}, 'severity': {'type': 'string', 'description': "Severity as reported by OSV (e.g. 'LOW', 'MODERATE', 'HIGH', 'CRITICAL')"}}, 'additionalProperties': False}, 'description': 'Advisories affecting fromVersion that are resolved at toVersion'}, 'migrationLinks': {'type': 'array', 'items': {'type': 'string'}, 'description': 'Migration or upgrade guide URLs found in release notes'}, 'recommendation': {'type': 'string', 'description': 'Single-line verdict explaining the recommendation level'}, 'breakingChanges': {'type': 'array', 'items': {'type': 'string'}, 'description': 'Breaking changes extracted from release notes; empty when none were found'}, 'releaseExcerpts': {'type': 'array', 'items': {'type': 'object', 'required': ['tag', 'excerpt'], 'properties': {'tag': {'type': 'string', 'description': 'Release tag the excerpt came from'}, 'excerpt': {'type': 'string', 'description': 'Short excerpt of the release notes'}}, 'additionalProperties': False}, 'description': 'Raw release-note excerpts, present only as a fallback when a major/minor bump yielded no breaking changes'}, 'recommendationLevel': {'enum': ['safe', 'likely-safe', 'review', 'caution', 'security'], 'type': 'string', 'description': 'Risk classification, used to rank packages in bulk results'}}, 'additionalProperties': False}
入力スキーマ
{'type': 'object', '$schema': 'http://json-schema.org/draft-07/schema#', 'required': ['changes'], 'properties': {'changes': {'type': 'array', 'items': {'type': 'object', 'required': ['ecosystem', 'name', 'fromVersion', 'toVersion'], 'properties': {'name': {'type': 'string', 'minLength': 1}, 'ecosystem': {'enum': ['npm', 'pypi', 'github-actions'], 'type': 'string', 'description': 'Package ecosystem'}, 'toVersion': {'type': 'string', 'minLength': 1}, 'fromVersion': {'type': 'string', 'minLength': 1}}}, 'maxItems': 50, 'minItems': 1, 'description': 'List of package changes to analyze'}}}
出力スキーマ
{'type': 'object', '$schema': 'http://json-schema.org/draft-07/schema#', 'required': ['totalPackages', 'bySemverClass', 'securityFixesTotal', 'packagesWithBreakingChanges', 'packages'], 'properties': {'packages': {'type': 'array', 'items': {'anyOf': [{'type': 'object', 'required': ['package', 'ecosystem', 'fromVersion', 'toVersion', 'semverClass', 'repoUrl', 'releaseCount', 'breakingChanges', 'securityFixes', 'migrationLinks', 'recommendation', 'recommendationLevel'], 'properties': {'package': {'type': 'string', 'description': 'Package name that was analyzed'}, 'repoUrl': {'type': ['string', 'null'], 'description': 'Source repository URL, or null when none could be resolved'}, 'ecosystem': {'enum': ['npm', 'pypi', 'github-actions'], 'type': 'string', 'description': 'Package ecosystem'}, 'toVersion': {'type': 'string', 'description': 'Version being upgraded to'}, 'fromVersion': {'type': 'string', 'description': 'Version being upgraded from'}, 'semverClass': {'enum': ['major', 'minor', 'patch', 'downgrade', 'unknown'], 'type': 'string', 'description': 'Semver relationship between the two versions'}, 'releaseCount': {'type': 'number', 'description': 'Number of GitHub releases found strictly between the two versions'}, 'securityFixes': {'type': 'array', 'items': {'type': 'object', 'required': ['id', 'summary', 'severity'], 'properties': {'id': {'type': 'string', 'description': "Advisory identifier (e.g. 'GHSA-29mw-wpgm-hmr9' or a CVE)"}, 'summary': {'type': 'string', 'description': 'One-line description of the advisory'}, 'severity': {'type': 'string', 'description': "Severity as reported by OSV (e.g. 'LOW', 'MODERATE', 'HIGH', 'CRITICAL')"}}, 'additionalProperties': False}, 'description': 'Advisories affecting fromVersion that are resolved at toVersion'}, 'migrationLinks': {'type': 'array', 'items': {'type': 'string'}, 'description': 'Migration or upgrade guide URLs found in release notes'}, 'recommendation': {'type': 'string', 'description': 'Single-line verdict explaining the recommendation level'}, 'breakingChanges': {'type': 'array', 'items': {'type': 'string'}, 'description': 'Breaking changes extracted from release notes; empty when none were found'}, 'releaseExcerpts': {'type': 'array', 'items': {'type': 'object', 'required': ['tag', 'excerpt'], 'properties': {'tag': {'type': 'string', 'description': 'Release tag the excerpt came from'}, 'excerpt': {'type': 'string', 'description': 'Short excerpt of the release notes'}}, 'additionalProperties': False}, 'description': 'Raw release-note excerpts, present only as a fallback when a major/minor bump yielded no breaking changes'}, 'recommendationLevel': {'enum': ['safe', 'likely-safe', 'review', 'caution', 'security'], 'type': 'string', 'description': 'Risk classification, used to rank packages in bulk results'}}, 'additionalProperties': False}, {'type': 'object', 'required': ['package', 'error', 'recommendationLevel'], 'properties': {'error': {'type': 'string', 'description': 'Why the analysis could not be completed'}, 'package': {'type': 'string', 'description': 'Package name whose analysis failed'}, 'recommendationLevel': {'type': 'string', 'const': 'review', 'description': "Always 'review' â\x80\x94 a package that could not be analyzed cannot be cleared automatically"}}, 'additionalProperties': False}]}, 'description': 'Per-package results, ranked security > caution > review > likely-safe > safe'}, 'bySemverClass': {'type': 'object', 'required': ['major', 'minor', 'patch'], 'properties': {'major': {'type': 'number', 'description': 'Count of major bumps'}, 'minor': {'type': 'number', 'description': 'Count of minor bumps'}, 'patch': {'type': 'number', 'description': 'Count of patch bumps'}}, 'description': 'Breakdown of the batch by semver class', 'additionalProperties': False}, 'totalPackages': {'type': 'number', 'description': 'Number of package changes submitted'}, 'securityFixesTotal': {'type': 'number', 'description': 'Total security advisories resolved across the whole batch'}, 'packagesWithBreakingChanges': {'type': 'number', 'description': 'How many packages had at least one breaking change'}}, 'additionalProperties': False}
最近のツール変更
類似のMCPサーバー
TinyFn
Offers deterministic utility functions for mathematics, conversions, validation, hashing, encoding, arrays, dates, colors, and pa…
hyperion
Acts as a paid MCP tool marketplace and utility gateway with server discovery, HTTP and JavaScript tools, research, data conversi…
Andreax
Offers pay-per-call AI services for inference, agent and workflow design, OCR and transcription, code generation and review, clas…
Vee3
Manages Clerk authentication infrastructure, including users, organizations, domains, sessions, tokens, OAuth, SSO, machines, per…
Courier
Provides notification delivery infrastructure for users, tenants, lists, templates, preferences, journeys, automations, brands, a…
GripForge
Generates, rigs, animates, analyzes, and packages game characters, weapons, armor, effects, environments, and engine-ready assets.
IA-QA — 130+ QA & Dev Tools for AI Agents
Provides deterministic QA, evaluation, testing, code analysis, prompt and RAG checks, model comparison, and web security diagnost…
apis-io
Provides catalog search, comparison, scoring, enrichment, lists, and dataset exports for APIs, providers, specifications, workflo…