
Research
/Security News
Popular npm Packages in the keyv and Cacheable Namespaces Compromised in Active Supply Chain Attack
Popular npm packages keyv and cacheable compromised.
Model Context Protocol server for AI IQ (aiiq.org) — query model IQ, rankings, benchmarks, and methodology.
Model Context Protocol server for AI IQ — query AI model IQ, rankings, applied-capability domains, benchmarks, and methodology from any MCP client (Claude Code, etc.).
Read-only. Talks to the public AI IQ API over HTTPS; no API key required.
Requires Node.js 18+. No API key needed. Works in any MCP client.
Claude Code (one command):
claude mcp add aiiq -- npx -y @aiiq/mcp # add --scope user for all projects
Claude Desktop — edit claude_desktop_config.json (Settings → Developer → Edit Config) and add:
{
"mcpServers": {
"aiiq": { "command": "npx", "args": ["-y", "@aiiq/mcp"] }
}
}
Then fully quit and reopen the app. (If Node is managed by nvm/asdf, use the absolute path to npx
as the command, since the desktop app doesn't inherit your shell PATH.)
Cursor / Windsurf / other clients — same JSON in the client's MCP config:
{ "mcpServers": { "aiiq": { "command": "npx", "args": ["-y", "@aiiq/mcp"] } } }
list_models — all public models with IQ, 7 dimension scores, emotional reasoning, rank, costget_model — full detail for one model (incl. per-benchmark results)list_rankings — available leaderboards with ids, names, model counts, and URLsget_ranking — ordered models for one ranking idlist_domains — applied-capability domains and benchmark countsget_domain — model composite IQs and benchmark leaderboards for one domainlist_benchmarks — benchmark catalogget_methodology — how AI IQ is computedcompare_models — side-by-side detail for several modelsAIIQ_API_BASE — override the versioned API base URL (default https://www.aiiq.org/api/v1).
A custom value must be the API root that contains paths such as /models and /rankings.pnpm install
pnpm test
pnpm build
MIT
FAQs
Model Context Protocol server for AI IQ (aiiq.org) — query model IQ, rankings, benchmarks, and methodology.
We found that @aiiq/mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Popular npm packages keyv and cacheable compromised.

Security News
A misconfiguration gave three Anthropic models internet access, and one, believing it was in a simulation, shipped a credential-stealing package to PyPI.

Security News
/Company News
Socket has joined the new Composer and Packagist sponsorship program as a launch sponsor, supporting the team that keeps PHP's package ecosystem secure.