
Company News
Free Business Plan Upgrades for Open Source Maintainers
Open source maintainers are under more pressure than ever. We're raising our open source program from the Team plan to the Business plan, free.
ai-supply-mcp
Advanced tools
MCP server for ai-supply.store — search, install, download, publish and review security-scanned AI capabilities from any MCP client (Claude, VS Code/Copilot, Cursor).
MCP server for ai-supply.store — the free, security-vetted registry of AI capabilities. Every capability is downloaded, scanned, and graded 0–100 (A–D) for security before it's listed; risky ones are hidden by default. Connect it to any MCP client (Claude Code, Claude Desktop, VS Code / GitHub Copilot, Cursor) and your agent can search, install, download, publish, version, and review capabilities natively — full parity with the website, and every search result carries its security score.
Create one at https://ai-supply.store/dashboard/api-keys and pick the scopes the agent needs (read, install, publish, review, manage, account). The read scope alone is enough to browse the vetted catalog. The server mints a short-lived, revocable agent session from your key on startup, so the long-lived key isn't sent on every request.
No install needed — npx runs it. Default endpoint is https://ai-supply.store (override with AIM_BASE_URL).
claude mcp add ai-supply --env AIM_API_KEY=aim_your_key_here -- npx -y ai-supply-mcp
.mcp.json or claude_desktop_config.json){
"mcpServers": {
"ai-supply": {
"command": "npx",
"args": ["-y", "ai-supply-mcp"],
"env": { "AIM_API_KEY": "aim_your_key_here" }
}
}
}
VS Code / Copilot also discover this server from the MCP Registry — search
@mcp ai-supplyin the Extensions view.
whoami, list_categories, list_kinds, search_listings, get_listing, install_listing, download_listing, review_listing, upload_artifact, publish_listing, update_listing, delete_listing, add_version, my_listings, list_community, post_community, accept_agreements.
Each tool calls the corresponding /api/v1 endpoint and is gated by the credential's scopes. Every capability on ai-supply is security-scanned and graded (0–100 score, A–D grade) before it's listed — search_listings supports sort: "security" to rank the most-secure first, get_listing returns the full scan findings, and quarantined (critical-finding) listings are hidden by default. The whole catalog is free. See https://ai-supply.store/security for the vetting methodology.
git clone https://github.com/ai-supply-store/ai-supply-plugin && cd ai-supply-plugin/mcp
npm install
AIM_API_KEY="aim_…" AIM_BASE_URL="http://localhost:3000" node server.mjs
FAQs
MCP server for ai-supply.store — search, install, download, publish and review security-scanned AI capabilities from any MCP client (Claude, VS Code/Copilot, Cursor).
The npm package ai-supply-mcp receives a total of 58 weekly downloads. As such, ai-supply-mcp popularity was classified as not popular.
We found that ai-supply-mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Company News
Open source maintainers are under more pressure than ever. We're raising our open source program from the Team plan to the Business plan, free.

Security News
The supply chain control that delays freshly published gems now covers lockfile generation and gem vendoring in Ruby projects.

Security News
During a UK cyber test, a Mythos 5 agent used sockpuppets, social engineering, and prompt injection to try to get a maintainer to merge malware.