Npm Registry MCP Server

MCP server for the npm registry — search packages, check versions, vulnerabilities, download stats and more

Local serverstdio

What is the Npm Registry MCP MCP server?

MCP server for the npm registry — search packages, check versions, vulnerabilities, download stats and more. Exposed over MCP by the npm registry mcp mcp server, that capability becomes something an assistant can invoke while it works, not something you go and do afterwards.

What it actually does

An MCP (Model Context Protocol) server that gives Claude direct access to the npm registry — search packages, check versions, audit vulnerabilities, compare libraries and more, all without leaving your conversation.

Its toolset

Everything the assistant can do here goes through one of these:

  • search_packages — Search npm by keyword with quality and maintenance scores
  • get_package_info — Full details — license, maintainers, dependencies, size, downloads
  • get_package_versions — Full version history with publish dates
  • get_download_stats — Download counts over any period (day / week / month / year)
  • check_vulnerabilities — Known CVEs for a specific package version
  • compare_packages — Side-by-side comparison of two packages
  • get_changelog — Release notes between two versions, falls back to CHANGELOG.md
  • get_package_readme — Full README for any package or specific version
  • Prerequisites — The Prerequisites tool exposed by this server

Configuration

Adding it to your client

The server ships on npm as mcp-npm-registry, so your MCP client can launch it on demand — there is no separate build step. Add the server block to your client's configuration, restart it, and the tools register themselves.

When to reach for it

This sits in the developer tooling group, where several servers overlap in what they claim to do but differ sharply once you actually set them up. Npm Registry MCP's toolset — search_packages, get_package_info, get_package_versions and 6 more — is a fair guide to whether it matches your workflow. It is maintained by einfacheente; worth a glance at recent repository activity before you build anything load-bearing on it.

We check each listing at SyncDev against the project's documentation before it goes live — if something here drifts out of date, it is a bug worth reporting.

Caveats

  • It runs with your machine's permissions. That is convenient and also the reason to think about what you point it at before you approve a tool call.
  • With 9 tools registered it takes up a noticeable share of the context window; turn it off in projects that never touch Npm Registry MCP.
  • MCP clients confirm each tool call by default. Leave that on until you have watched what the npm registry mcp mcp server does with a few real requests.

Available tools

ToolWhat it does
search_packagesSearch npm by keyword with quality and maintenance scores
get_package_infoFull details — license, maintainers, dependencies, size, downloads
get_package_versionsFull version history with publish dates
get_download_statsDownload counts over any period (day / week / month / year)
check_vulnerabilitiesKnown CVEs for a specific package version
compare_packagesSide-by-side comparison of two packages
get_changelogRelease notes between two versions, falls back to CHANGELOG.md
get_package_readmeFull README for any package or specific version
PrerequisitesThe Prerequisites tool exposed by this server.

How to install the Npm Registry MCP MCP server

{
  "mcpServers": {
    "npm-registry": {
      "command": "npx",
      "args": ["mcp-npm-registry"]
    }
  }
}

Configuration as documented by the project. Restart the client after saving.

Configuration

Example prompts to try

  • Use Npm Registry MCP to search packages.
  • Use Npm Registry MCP to get package info.
  • Use Npm Registry MCP to get package versions.

Frequently asked questions

It connects Npm Registry MCP to MCP-compatible AI assistants such as Claude and Cursor, exposing 9 tools (search_packages, get_package_info, get_package_versions, and more) that the assistant can call on your behalf. Instead of copying data back and forth by hand, the assistant works with Npm Registry MCP directly.