npm-research
Installation
SKILL.md
npm Package Research via MCP
Use this skill for in-depth npm package research: bundle sizes, vulnerability scanning, download comparisons, and dependency trees. No API keys needed.
Available Tools
| Tool | What it does |
|---|---|
search |
Search npm packages by query |
package_info |
Detailed info: description, license, repo, dependencies |
downloads |
Download stats for a package |
compare_downloads |
Compare download counts across multiple packages |
bundle_size |
Bundle size (minified + gzip) via Bundlephobia |
vulnerabilities |
Known vulnerability info and advisory links |
dependency_tree |
Show direct dependencies as a tree |
download_trends |
Daily breakdown with sparkline visualization |
Workflow
- For "which library?" questions:
compare_downloads+bundle_sizefor each candidate - For security audits:
vulnerabilitieson each dependency - For adoption analysis:
download_trendsto see growth patterns - For dependency footprint:
dependency_treebefore adding a new package
Key Patterns
bundle_sizecalls Bundlephobia — some packages may not be analyzable (native modules, very large packages)compare_downloadsaccepts multiple package names — ideal for "zustand vs jotai vs valtio" comparisonsvulnerabilitieschecks npm audit advisories — always run this before recommending a packagedownload_trendsincludes a text sparkline for quick visual trend assessment
Weekly Installs
1
Repository
ofershap/mcp-se…npm-plusFirst Seen
Mar 5, 2026
Security Audits
Installed on
mcpjam1
claude-code1
replit1
junie1
windsurf1
zencoder1