Registry listed
NPMScan
io.github.salemalem/npmscan
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Registry namespace and declared repository point to the same GitHub account; vendor affiliation is not independently certified.
Source version 1.0.0 · metadata updated 2026-08-01 · observed 2026-09-08
Your selected conditions
1 mode match these recorded conditions. This is not a runtime compatibility test.
Clear conditions and review all modesRequirements & setup
Facts belong to the specific distribution and mode shown. Combining facts from different modes can produce an unusable configuration.
Remote service
Matches the selected recorded conditions
- Run location
- Remote service · streamable-http
- Authentication
- Unknown — absence of metadata is not no-auth.
- Dependencies
- Network access and a compatible client; service and account prerequisites are not established by Registry metadata.
- Costs
- Unknown — source availability does not establish total service costs.
- Documented clients
- Unknown; review client and publisher documentation.
Distribution metadata
- Declared connection URL
https://npmscan.com/api/mcpConnection metadata only. GPTsApp has not connected to or executed this server.
Observed versions & changes
This directory observed 1 release record for this identity. A latest-only initial scan is not a complete release archive. Metadata changes are not runtime or breaking-change verdicts.
- 1.0.0active · source-designated latest · 2026-08-01Source
Catalog observation history
- artifact observed2026-09-07 · 1.0.0
Prepare a correction
Create a local note for review. This does not submit anything. This preview has no live moderation inbox. Include only public facts, never credentials or private logs.