Dependency License Compliance Checker MCP Connector for Claude
A+Audit software dependencies against approved SPDX license identifiers to ensure supply-chain compliance.
This MCP server provides essential tools for securing the software supply chain by auditing dependency licenses. Use audit_dependencies to verify if a list of packages complies with your organization's whitelist, or use get_dependency_license to retrieve the specific SPDX identifier for a single package. The validate_license_format tool ensures that license strings are recognized SPDX identifiers. It acts as a bridge between your AI agent and your compliance policy, ensuring every dependency is vetted against your approved list.
Related Connectors
Dependency Resolution Engine MCP
Deterministic dependency resolution for agent tool and plugin loading.
CrewAI Task Dependency Graph Validator MCP
Ensures multi-agent task sequences are free of circular logic and properly ordered.
Google Deps.dev Security Hacker MCP
Transform your AI into a Senior DevSecOps Engineer. Instantly audit any open-source package, hunt for hidden supply-chain threats in dependency trees, and analyze full GitHub repositories using Google's deps.dev API. No authentication required.
claude-task-completion-verifier MCP
A deterministic verification engine that validates task fulfillment by checking files, content, and command execution.