Software Supply Chain / Packages data for AI agents
Open-source package and dependency intelligence: npm, PyPI, and crates.io metadata plus GitHub repository health. Pair with the CVE tools to vet a dependency.
Get a free key → See all 4 tools
Connect in one step
Software Supply Chain / Packages tools run on the same LiveDataLink endpoint as every other domain - one bearer key, no per-source integration. Add this to your MCP client (Claude, Cursor, n8n, LangChain, and more):
{
"mcpServers": {
"livedatalink": {
"url": "https://livedatalink.ai/mcp",
"headers": { "Authorization": "Bearer YOUR_API_KEY" }
}
}
}
Then call any tool below. The free tier gives you 1,000 queries/month across all 284 tools with no credit card.
Software Supply Chain / Packages tools (4)
| npm_package | npm package metadata: latest version, license, repository, last publish, deprecation, last-month downloads. |
| pypi_package | PyPI (Python) package metadata: latest version, summary, license, author, required Python version. |
| cargo_crate | crates.io (Rust) crate metadata: latest version, description, total downloads, repository. |
| github_repo | Public GitHub repo health: stars, forks, open issues, language, license, last push, archived status. |
Common queries this domain answers: npm · package · dependency · pypi · python package · crate · cargo · rust · github · repo · repository · open source · library · supply chain · sbom · version · license · maintained.
Why LiveDataLink for Software Supply Chain / Packages
- One key, 59 domains. These tools sit alongside FMCSA carrier safety, sanctions screening, SEC filings, courts, Census, and FRED - no separate integration per source.
- Resale-safe. Sourced from npm / PyPI / crates.io / GitHub - public and openly-licensed data you can embed and redistribute.
- Built for agents. Read-only annotated MCP tools, Streamable HTTP, Bearer auth. Works out of the box in Claude, Cursor, and n8n's native MCP node.
FAQ
- What Software Supply Chain / Packages data can an AI agent access through LiveDataLink?
- Open-source package and dependency intelligence: npm, PyPI, and crates.io metadata plus GitHub repository health. Pair with the CVE tools to vet a dependency. It exposes 4 tools (npm_package, pypi_package, cargo_crate, github_repo) over the Model Context Protocol at https://livedatalink.ai/mcp, sourced from npm / PyPI / crates.io / GitHub.
- How do I connect to the LiveDataLink Software Supply Chain / Packages MCP server?
- Add https://livedatalink.ai/mcp as a Streamable-HTTP MCP server in Claude, Cursor, n8n, or any MCP client, with an "Authorization: Bearer YOUR_API_KEY" header. Get a free key (1,000 queries/month, no credit card) at https://livedatalink.ai/signup/free. No per-domain setup - the Software Supply Chain / Packages tools load under the same key as every other domain.
- Is the LiveDataLink Software Supply Chain / Packages data free and safe to redistribute?
- LiveDataLink sources Software Supply Chain / Packages data from npm / PyPI / crates.io / GitHub. Public-domain US-government and openly-licensed data is resale-safe, so results can be embedded and redistributed in your own product. The free tier includes 1,000 queries/month; paid plans start at $10/month.