@modelcontextprotocol/inspector

npm

Is @modelcontextprotocol/inspector safe to use?

Based on the latest brin safety scan, no vulnerabilities or threats were detected for @modelcontextprotocol/inspector v0.20.0. Trust score: 75/100. No known CVE vulnerabilities, no detected threat patterns, and no suspicious capabilities identified. This is an automated, point-in-time assessment.

Install (safety-checked)

@modelcontextprotocol/inspector Passed Security Checks

No security concerns detected

clean
CVEs

0

Threats

0

Install Scripts

0

No Concerns Detected

No security concerns detected in the latest brin assessment. This is an automated, point-in-time evaluation — security posture may change.

This is an automated, point-in-time assessment and may contain errors. Findings are risk indicators, not confirmed threats. Security posture may change over time. Maintainers can dispute findings via the brin review process.

@modelcontextprotocol/inspector Capabilities & Permissions

What @modelcontextprotocol/inspector can access when installed. Review these capabilities before using with AI agents like Cursor, Claude Code, or Codex.

Network Access

This package makes network requests.

Protocols: http, https

Filesystem Access

Reads from the filesystem.

/usr/ (r).env (r)/usr/ (r).env (r)/usr/ (r).env (r)/usr/ (r).env (r)+3 more

Process Spawning

This package can spawn child processes.

Environment Variables

Accesses the following environment variables.

ALLOWED_ORIGINSCLIENT_PORTDANGEROUSLY_OMIT_AUTHDEBUGHOSTINSPECTOR_URLMCP_AUTO_OPEN_ENABLEDMCP_ENV_VARSMCP_PROXY_AUTH_TOKENSERVER_PORT

AGENTS.md for @modelcontextprotocol/inspector

Good instructions lead to good results. brin adds @modelcontextprotocol/inspector documentation to your AGENTS.md so your agent knows how to use it properly—improving both safety and performance.

brin init

Vercel's research: 100% accuracy with AGENTS.md vs 53% without →

@modelcontextprotocol/inspector Documentation & Source Code

For the full @modelcontextprotocol/inspector README, API documentation, and source code, visit the official package registry.

Frequently asked questions about @modelcontextprotocol/inspector safety

Weekly Downloads

119.5K

Version

0.20.0

License

SEE LICENSE IN LICENSE

Other Versions

Last Scanned

Feb 9, 2026

Trust Score

75/100·Legitimacy signals, not safety

Capabilities

Network

Makes network requests

Filesystem

Reads files

Process

Spawns child processes

Environment

Accesses: ALLOWED_ORIGINS, CLIENT_PORT, DANGEROUSLY_OMIT_AUTH...

Is @modelcontextprotocol/inspector Safe? | npm Safety Scan - brin