GhostFree
MCP server that scans your repo's dependencies for security vulnerabilities based on published CVEs.
Install
npmstdio
npx -y ghostfree Client config (Claude Desktop, Cursor, Windsurf and most MCP clients)
{
"mcpServers": {
"io-github-shane-js-ghostfree": {
"command": "npx",
"args": [
"-y",
"ghostfree"
]
}
}
} Source: official MCP Registry record · registry name io.github.shane-js/ghostfree · published 2026-04-07 · updated 2026-04-07. Not an endorsement; review the code before connecting it to anything sensitive.