osv_query_package

shallow

io.github.cyanheads/osv-advisory-mcp-server · Verify this server

Query known vulnerabilities for a single package version across any supported ecosystem. Returns all matching OSV advisories with severity (CVSS vectors), CVE aliases, affected version ranges, and first safe version. Use osv_list_ecosystems to validate the ecosystem string before querying — ecosystem strings are case-sensitive exact matches and an invalid value returns an error, not empty results.

100.0/100

1 trials · measured 2 days ago

osv_query_package scores 100.0/100 on Vouch's measured behaviour index, from 1 real invocation trials against io.github.cyanheads/osv-advisory-mcp-server, measured 31 Aug 2026 under methodology v0.2.0. Every measured component scored 100.

Component breakdown

ComponentWeightValue
Reliability35%not applicable
Schema integrity25%100.0
Failure behaviour15%not applicable
Latency15%not applicable
Concurrency10%not applicable

Tool details

Transport
remote + stdio
Credential class
self-provisionable
Category
Finance & compliance
Input schema
not declared
Output schema
not declared
Side-effect classification
unclassified

Score history

DayScoreTierMethodology
2026-08-31100.0shallowv0.2.0

Probe evidence

ProbeOutcomes
schema_integritypass: 1

Raw request/response logs are not archived yet — the outcome counts above are drawn directly from every recorded trial.

Embed this score

Available for every tool, scored or not — not a verification perk. Always links back to this page.

Vouch score: osv_query_package
[![Vouch score](https://vouch.tools/api/tools/76050f19-ad35-4dcb-a5b3-7609bfad736f/badge.svg)](https://vouch.tools/tools/76050f19-ad35-4dcb-a5b3-7609bfad736f)
osv_query_package — Vouch