4da Mcp Server
@runyourempire
About 4da Mcp Server
Dependency intelligence for AI coding agents. Live CVE scanning, dependency health, upgrade planning, ecosystem news, decision memory. 14 tools, zero config, privacy-first.
Config
Add this server to your MCP-compatible client using the configuration below.
{
"mcpServers": {
"mcp-4da-server": {
"command": "npx",
"args": [
"@4da/mcp-server"
]
}
}
}Tools
9Scan dependencies for known CVEs via OSV.dev across npm/Rust/Python/Go, zero config. Call when the user asks about security, vulnerabilities, or CVEs, or before you recommend a dependency.
Dependency version freshness, deprecation, and CVE counts across npm/Rust/Python/Go. Call when the user asks whether their dependencies are outdated, stale, or need updating.
Prioritized upgrade plan (CVE severity, deprecation, version distance), quick wins vs breaking changes. Call when the user asks what to upgrade, or after dependency_health surfaces problems.
Pre-task briefing: advisories, active decisions, signals, and ecosystem updates for a task. Call BEFORE starting any non-trivial task to get caught up first.
Live Hacker News discussions filtered to the user's tech stack. Call when the user asks what is new or trending in their ecosystem.
What 4DA knows about the user: role, tech stack, interests, and learned affinities. Call FIRST when you need to know what the user works on before answering or recommending.
Record, list, update, or supersede the developer's architectural and tech decisions. Call when the user makes, changes, or asks about a settled decision or convention.
Check whether a technology or pattern aligns with the developer's recorded decisions. Call BEFORE suggesting a major tech change, new library, or architecture shift.
Cross-agent persistent memory: what one agent learns, any agent can recall. Call to store a discovery, decision, or warning, or to recall prior context before starting work.
Overview
What is 4da Mcp Server?
4da Mcp Server is an MCP-compatible integration that scans your project, detects your stack, and provides live vulnerability scanning, dependency health, upgrade planning, and ecosystem intelligence to your AI assistant. It works standalone with no API keys or accounts required and runs locally.
How to use 4da Mcp Server?
For Claude Code, Cursor, or Windsurf, run npx @4da/mcp-server in your project directory. This scans your project and gives your AI assistant the intelligence tools. 9 tools work standalone with zero setup; 5 more require additional configuration.
Key features of 4da Mcp Server
- 14 tools for dependency security, intelligence, decisions, and agent memory
- Scans Cargo.toml, package.json, go.mod, and Git history
- Scores articles from 20+ sources against your actual build
- 92% noise rejection rate; 98% of actual noise correctly rejected
- Behavior learning from save/dismiss feedback
- Fully local-first with no 4DA-operated server
Use cases of 4da Mcp Server
- Live vulnerability scanning for your project’s dependencies
- Dependency freshness and health monitoring
- Upgrade planning and prioritization
- Pre-task briefings with tailored ecosystem intelligence
- Cross-session, cross-agent persistent decision memory
FAQ from 4da Mcp Server
How does 4da Mcp Server differ from the desktop app?
The MCP server works standalone—no desktop app required—and gives your AI assistant live scanning and intelligence directly in your terminal or editor.
What dependencies or runtime does it require?
It runs via npx from the npm package @4da/mcp-server. The MCP server itself is a Node.js tool; it does not require a Rust toolchain. For LLM verification, you can use Ollama (free, local) or bring your own Anthropic/OpenAI key.
Where does my data live?
All indexed content, scores, and intelligence live in a SQLite database on your machine. There is no 4DA-operated server, no analytics, and no user account system.
What transport or authentication does the MCP server use?
The MCP server uses standard MCP transport. No API keys or accounts are required for the core functionality; optional LLM features require you to bring your own API key for Anthropic/OpenAI or use local Ollama.
Are there any known limits?
The MCP server provides 14 tools total: 9 work with zero setup, 5 require additional configuration. The noise rejection algorithm requires your local file system to compute accurate scores.
Frequently asked questions
How does 4da Mcp Server differ from the desktop app?
The MCP server works standalone—no desktop app required—and gives your AI assistant live scanning and intelligence directly in your terminal or editor.
What dependencies or runtime does it require?
It runs via `npx` from the npm package `@4da/mcp-server`. The MCP server itself is a Node.js tool; it does not require a Rust toolchain. For LLM verification, you can use Ollama (free, local) or bring your own Anthropic/OpenAI key.
Where does my data live?
All indexed content, scores, and intelligence live in a SQLite database on your machine. There is no 4DA-operated server, no analytics, and no user account system.
What transport or authentication does the MCP server use?
The MCP server uses standard MCP transport. No API keys or accounts are required for the core functionality; optional LLM features require you to bring your own API key for Anthropic/OpenAI or use local Ollama.
Are there any known limits?
The MCP server provides 14 tools total: 9 work with zero setup, 5 require additional configuration. The noise rejection algorithm requires your local file system to compute accurate scores.
Basic information
More Developer Tools MCP servers

Skilder.ai
skilder.aiRun skills and MCP tools like production software: versioned, composed into roles, distributed to every agent from one governed library.
extentos
Asger mølgaardExtentos is a multi-vendor development platform for adding smart-glasses capabilities to existing iOS and Android apps. The simplest analogy is Stripe for smart glasses:

Skycloak
Manage your Skycloak-hosted Keycloak: clusters, realms, apps, SSO and users, from any MCP client.

Reelier
Maxime HouleAgents make claims. Reelier writes receipts — record an agent's tool-call workflow once, replay it deterministically at 0 tokens, and diff runs to catch drift.
AptiBuild AI — Career Intelligence
ParklandBuildsAptiBuild AI — Career Intelligence MCP Server Structured career decision scaffolding for AI agents. Provides personality-conditioned business idea generation, official BLS OEWS wage data, FRED labor market signals, and
Comments