MCPLow riskUnclaimed
whichlib
Dependency picker for coding agents: recommends, compares and scores GitHub repos with a verdict.
josifbjosifb/whichlib
server.json
{
"$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
"name": "io.github.josifb/whichlib",
"description": "Dependency picker for coding agents: recommends, compares and scores GitHub repos with a verdict.",
"title": "whichlib",
"repository": {
"url": "https://github.com/josifb/whichlib",
"source": "github",
"subfolder": "whichlib"
},
"version": "0.2.0",
"websiteUrl": "https://whichlib.com",
"packages": [
{
"registryType": "npm",
"registryBaseUrl": "https://registry.npmjs.org",
"identifier": "whichlib",
"version": "0.2.0",
"transport": {
"type": "stdio"
},
"environmentVariables": [
{
"description": "Optional. Raises GitHub's search limit from 10 to 30 requests per minute. A fine-grained token with no permissions is enough.",
"isSecret": true,
"name": "GITHUB_TOKEN"
},
{
"description": "Optional. Set to \"off\" to disable anonymous call counting (tool name, random install id, version, platform, Node major). DO_NOT_TRACK=1 also disables it.",
"name": "WHICHLIB_TELEMETRY"
}
]
}
],
"remotes": [
{
"type": "streamable-http",
"url": "https://whichlib.com/mcp",
"headers": [
{
"description": "Optional. Your own GitHub token for unlimited use (otherwise 50 free calls per day). Used for your request only, never stored.",
"isSecret": true,
"name": "X-GitHub-Token"
}
]
}
]
}Permissions
DeclaredDetected
Runs code—
nodeInstalls—
npm:whichlib@0.2.0Runs install scripts—None
Network
whichlib.comwhichlib.comNeeds credentials
GITHUB_TOKENX-GitHub-TokenGITHUB_TOKENX-GitHub-TokenOutside the workspace—None
Agent tools—None
Checks
Low risk · Nothing worth a warning was found.
Not reviewed by a person · Checked by rules; the model review is not switched on yet.
Versions
- #10.2.0latestOct 7, 2026
whichlibOpen in Codeg