Safe Upgrade MCP Server
by white-hat-labio.github.white-hat-lab/safe-upgradev0.2.0
MCP server for the Safe Upgrade Decision API: evidence-backed npm upgrade preflight and dependency audits for coding agents, paid per call via x402.
context tax
queued
security
queued
cold start
queued
freshness
Maintained2mo ago
Install Safe Upgrade MCP server
Install in Claude Code
claude mcp add safe-upgrade -e PAYER_PRIVATE_KEY='<payer-private-key>' -- npx -y safe-upgrade-mcpInstall in Cursor
{
"mcpServers": {
"safe-upgrade": {
"command": "npx",
"args": [
"-y",
"safe-upgrade-mcp"
],
"env": {
"PAYER_PRIVATE_KEY": "<payer-private-key>"
}
}
}
}Add to ~/.cursor/mcp.json (global) or .cursor/mcp.json (project).
Install in Claude Desktop
{
"mcpServers": {
"safe-upgrade": {
"command": "npx",
"args": [
"-y",
"safe-upgrade-mcp"
],
"env": {
"PAYER_PRIVATE_KEY": "<payer-private-key>"
}
}
}
}Settings → Developer → Edit Config (claude_desktop_config.json), then restart.
Install in VS Code
{
"servers": {
"safe-upgrade": {
"type": "stdio",
"command": "npx",
"args": [
"-y",
"safe-upgrade-mcp"
],
"env": {
"PAYER_PRIVATE_KEY": "<payer-private-key>"
}
}
}
}Add to .vscode/mcp.json in your workspace.
Install in Windsurf
{
"mcpServers": {
"safe-upgrade": {
"command": "npx",
"args": [
"-y",
"safe-upgrade-mcp"
],
"env": {
"PAYER_PRIVATE_KEY": "<payer-private-key>"
}
}
}
}Add to ~/.codeium/windsurf/mcp_config.json.
Configuration
| Variable | Required | Secret | Description |
|---|---|---|---|
| PAYER_PRIVATE_KEY | — | yes | Private key of a wallet holding USDC on Base, used to sign x402 payments per call. Use a dedicated low-balance wallet. |
Freshness
Maintained — last maintenance signal 2mo ago. The newest of the signals below sets the band.
Last commit (default branch)
no data · GitHub
Latest release
no data · GitHub
Package published
no data · npm/PyPI
Registry entry updated
2026-08-10 · 2mo ago · official registry · v0.2.0
FAQ
›How do I install the Safe Upgrade MCP server in Claude Code?
Run: claude mcp add safe-upgrade -e PAYER_PRIVATE_KEY='<payer-private-key>' -- npx -y safe-upgrade-mcp. For Cursor, VS Code, Claude Desktop and Windsurf, use the install tabs above.
›Does Safe Upgrade require an API key?
Yes. It expects PAYER_PRIVATE_KEY, of which 1 is a secret.
›Can I use Safe Upgrade as a remote (hosted) MCP server?
No hosted endpoint is published; it runs locally over stdio.
›Is Safe Upgrade in the official MCP registry?
Yes, as io.github.white-hat-lab/safe-upgrade.