Monitors the software supply chain provenance of local Model Context Protocol (MCP) server packages.
Provenance Monitor is a web dashboard designed to provide visibility into the software supply chain security of your local Model Context Protocol (MCP) server packages. It helps ensure the integrity and trustworthiness of your MCP server dependencies by monitoring provenance data sourced from the MCP registry. The dashboard currently supports servers published on npm and PyPI, offering a convenient way to track provenance statements and attestations.
주요 기능
01Monitors provenance of MCP server packages
02Data refreshed daily
03Web-based dashboard for easy access
04Supports npm and PyPI packages
052 GitHub stars
사용 사례
01Identifying MCP servers with missing provenance information
02Verifying the integrity of MCP server dependencies
03Improving the supply chain security of MCP-based applications