
Security News
GPT-6 Astra Attempts Supply Chain Attacks Against Open Source Maintainers in Testing
GPT-6 Astra hits 100% on ExploitBench and finds zero-days autonomously, while independent tests reveal scope violations and monitoring gaps.
@ansvar/singapore-law-mcp
Advanced tools
Complete Singapore law database — 523 Acts, 28K+ provisions from Singapore Statutes Online (sso.agc.gov.sg) with full-text search, definitions, and citation support
The SSO alternative for the AI age.
Query 523 Singapore Acts -- from the Personal Data Protection Act and Cybersecurity Act to the Companies Act, Computer Misuse Act, and more -- directly from Claude, Cursor, or any MCP-compatible client.
If you're building legal tech, compliance tools, or doing Singapore legal research, this is your verified reference database.
Built by Ansvar Systems -- Stockholm, Sweden
Singapore legal research is scattered across Singapore Statutes Online (SSO), the Attorney-General's Chambers, and LawNet. Whether you're:
...you shouldn't need dozens of browser tabs and manual PDF cross-referencing. Ask Claude. Get the exact provision. With context.
This MCP server makes Singapore law searchable, cross-referenceable, and AI-readable.
Connect directly to the hosted version -- zero dependencies, nothing to install.
Endpoint: https://singapore-law-mcp.vercel.app/mcp
| Client | How to Connect |
|---|---|
| Claude.ai | Settings > Connectors > Add Integration > paste URL |
| Claude Code | claude mcp add singapore-law --transport http https://singapore-law-mcp.vercel.app/mcp |
| Claude Desktop | Add to config (see below) |
| GitHub Copilot | Add to VS Code settings (see below) |
Claude Desktop -- add to claude_desktop_config.json:
{
"mcpServers": {
"singapore-law": {
"type": "url",
"url": "https://singapore-law-mcp.vercel.app/mcp"
}
}
}
GitHub Copilot -- add to VS Code settings.json:
{
"github.copilot.chat.mcp.servers": {
"singapore-law": {
"type": "http",
"url": "https://singapore-law-mcp.vercel.app/mcp"
}
}
}
npx @ansvar/singapore-law-mcp
Claude Desktop -- add to claude_desktop_config.json:
macOS: ~/Library/Application Support/Claude/claude_desktop_config.json
Windows: %APPDATA%\Claude\claude_desktop_config.json
{
"mcpServers": {
"singapore-law": {
"command": "npx",
"args": ["-y", "@ansvar/singapore-law-mcp"]
}
}
}
Cursor / VS Code:
{
"mcp.servers": {
"singapore-law": {
"command": "npx",
"args": ["-y", "@ansvar/singapore-law-mcp"]
}
}
}
Once connected, just ask naturally:
| Act | Year | Significance |
|---|---|---|
| Personal Data Protection Act (PDPA) | 2012 (amended 2020) | Comprehensive data protection law; mandatory data breach notification since 1 February 2021; significant fines up to S$1 million per breach |
| Cybersecurity Act | 2018 | Framework for protection of Critical Information Infrastructure (CII); establishes the Cyber Security Agency (CSA) |
| Computer Misuse Act | 1993 (amended) | Criminalises unauthorised access to computer material, computer service, and cyberattacks |
| Electronic Transactions Act | 2010 | Legal recognition of electronic records and electronic signatures |
| Companies Act | 1967 (revised) | Corporate governance, registration, directors' duties |
| Spam Control Act | 2007 | Regulation of unsolicited commercial electronic messages |
| Constitution of the Republic of Singapore | 1963 | Supreme law; Article 9 protects liberty of the person |
SMALL -- Single tier, bundled SQLite database shipped with the npm package.
Estimated database size: ~80-150 MB (full corpus of Singapore federal legislation)
| Tool | Description |
|---|---|
search_legislation | FTS5 full-text search across all provisions with BM25 ranking |
get_provision | Retrieve specific provision by statute + chapter/section |
check_currency | Check if statute is in force, amended, or repealed |
validate_citation | Validate citation against database (zero-hallucination check) |
build_legal_stance | Aggregate citations from statutes for a legal topic |
format_citation | Format citations per Singapore conventions (full/short/pinpoint) |
list_sources | List all available statutes with metadata |
about | Server info, capabilities, and coverage summary |
| Tool | Description |
|---|---|
get_eu_basis | Get EU directives/regulations for Singapore statute |
get_singapore_implementations | Find Singapore laws implementing EU act |
search_eu_implementations | Search EU documents with Singapore implementation counts |
get_provision_eu_basis | Get EU law references for specific provision |
validate_eu_compliance | Check implementation status of EU directives |
Verbatim Source Text (No LLM Processing):
Smart Context Management:
Technical Architecture:
Official Sources --> Parse --> SQLite --> FTS5 snippet() --> MCP response
^ ^
Provision parser Verbatim database query
| Traditional Approach | This MCP Server |
|---|---|
| Search official databases by statute number | Search by plain language |
| Navigate multi-chapter statutes manually | Get the exact provision with context |
| Manual cross-referencing between laws | build_legal_stance aggregates across sources |
| "Is this statute still in force?" --> check manually | check_currency tool --> answer in seconds |
| Find EU basis --> dig through EUR-Lex | get_eu_basis --> linked EU directives instantly |
| No API, no integration | MCP protocol --> AI-native |
All content is sourced from authoritative Singapore legal databases:
Verified data only -- every citation is validated against official sources. Zero LLM-generated content.
This project uses multiple layers of automated security scanning:
| Scanner | What It Does | Schedule |
|---|---|---|
| CodeQL | Static analysis for security vulnerabilities | Weekly + PRs |
| Semgrep | SAST scanning (OWASP top 10, secrets, TypeScript) | Every push |
| Gitleaks | Secret detection across git history | Every push |
| Trivy | CVE scanning on filesystem and npm dependencies | Daily |
| Socket.dev | Supply chain attack detection | PRs |
| Dependabot | Automated dependency updates | Weekly |
See SECURITY.md for the full policy and vulnerability reporting.
THIS TOOL IS NOT LEGAL ADVICE
Statute text is sourced from official Singapore government publications. However:
- This is a research tool, not a substitute for professional legal counsel
- Court case coverage is limited -- do not rely solely on this for case law research
- Verify critical citations against primary sources for court filings
- EU cross-references are extracted from statute text, not EUR-Lex full text
Before using professionally, read: DISCLAIMER.md | SECURITY.md
Queries go through the Claude API. For privileged or confidential matters, use on-premise deployment.
git clone https://github.com/Ansvar-Systems/Singapore-law-mcp
cd Singapore-law-mcp
npm install
npm run build
npm test
npm run dev # Start MCP server
npx @anthropic/mcp-inspector node dist/index.js # Test with MCP Inspector
This server is part of Ansvar's Compliance Suite -- MCP servers that work together for end-to-end compliance coverage:
Query 49 EU regulations directly from Claude -- GDPR, AI Act, DORA, NIS2, MiFID II, eIDAS, and more. Full regulatory text with article-level search. npx @ansvar/eu-regulations-mcp
Query US federal and state compliance laws -- HIPAA, CCPA, SOX, GLBA, FERPA, and more. npx @ansvar/us-regulations-mcp
Query 261 security frameworks -- ISO 27001, NIST CSF, SOC 2, CIS Controls, SCF, and more. npx @ansvar/security-controls-mcp
Query UNECE R155/R156 and ISO 21434 -- Automotive cybersecurity compliance. npx @ansvar/automotive-cybersecurity-mcp
30+ national law MCPs covering Australia, Brazil, Canada, China, Denmark, Finland, France, Germany, Ghana, Iceland, India, Ireland, Israel, Italy, Japan, Kenya, Netherlands, Nigeria, Norway, Singapore, Slovenia, South Korea, Sweden, Switzerland, Thailand, UAE, UK, and more.
Contributions welcome! See CONTRIBUTING.md for guidelines.
Priority areas:
If you use this MCP server in academic research:
@software{singapore_law_mcp_2025,
author = {Ansvar Systems AB},
title = {Singapore Law MCP Server: AI-Powered Legal Research Tool},
year = {2025},
url = {https://github.com/Ansvar-Systems/Singapore-law-mcp},
note = {Singapore legal database with full-text search and EU cross-references}
}
Apache License 2.0. See LICENSE for details.
We build AI-accelerated compliance and legal research tools for the global market. This MCP server started as our internal reference tool -- turns out everyone building compliance tools has the same research frustrations.
So we're open-sourcing it.
ansvar.eu -- Stockholm, Sweden
Built with care in Stockholm, Sweden
FAQs
Complete Singapore law database — 523 Acts, 28K+ provisions from Singapore Statutes Online (sso.agc.gov.sg) with full-text search, definitions, and citation support
The npm package @ansvar/singapore-law-mcp receives a total of 92 weekly downloads. As such, @ansvar/singapore-law-mcp popularity was classified as not popular.
We found that @ansvar/singapore-law-mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
GPT-6 Astra hits 100% on ExploitBench and finds zero-days autonomously, while independent tests reveal scope violations and monitoring gaps.

Product
Socket can now send alerts and supply chain attack notifications to Microsoft Teams, with filters that route the right updates to each channel.

Security News
pnpm 12 rewrites the package manager in Rust, cutting install times by up to 90% while preserving pnpm 11 workflows and lockfiles.