# FreshDeps

> Use this tool when you need to assess the freshness and security of npm and PyPI packages, identifying potential vulnerabilities and deprecated dependencies. FreshDeps provides a four-tier freshness verdict and suggests alternative packages, accepting ecosystem type and package name as input and returning version info, release age, and CVE counts as output. It is ideal for developers and security teams seeking to ensure the reliability and maintainability of their projects.

Canonical page: https://skillsregistry.net/skills/freshdeps-mcp  
JSON: https://api.skillsregistry.net/v1/skills/freshdeps-mcp

## Description

FreshDeps checks npm and PyPI packages against live registry data, GitHub activity, and the OSV vulnerability database to return a four-tier freshness verdict: alive, slowing, stale, or abandoned. It exposes a single MCP tool that accepts an ecosystem type and package name, returning version info, release age, deprecation flags, CVE counts, and alternative package suggestions. The service is backed by a free JSON API at freshdeps.vercel.app and integrates with Claude Desktop and Cursor.

## Trust

- **Trust score (0–1):** 0.65
- **Verification tier:** scanned
- **Last scanned:** 2026-09-01

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** database
- **Updated:** 2026-09-01

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/freshdeps-mcp)
- **Repository:** <https://github.com/solvohq/freshdeps-mcp>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "freshdeps-mcp"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/freshdeps-mcp` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/freshdeps-mcp/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
