safedep/vet
vet-mcp checks open source packages—like those suggested by AI coding tools—for vulnerabilities and malicious code. It supports npm and PyPI, and runs locally via Docker or as a standalone binary for fast, automated vetting.
- Category
- Security
- Language
- Go
- License
- Apache-2.0
- Stars
- 1001
- Source
- https://github.com/safedep/vet