hound_popular
Scan popular packages for known vulnerabilities
How to use it
hound_popular is exposed by the Hound MCP MCP server. Add the server to your MCP client (Claude Desktop, Cursor, Windsurf and others), and the hound_popular tool becomes available to the model automatically. See the full listing for setup details and every tool this server provides.
Install Hound MCP
claude mcp add hound -- npx -y hound-mcpOther tools in Hound MCP (10)
Full advisory details by GHSA, CVE, or OSV ID
Side-by-side comparison of two packages with a recommendation
Full package profile — license, vulns, scorecard, stars, dep count
Scan a lockfile for license compliance against a policy
GO / CAUTION / NO-GO verdict before installing a package
0–100 Hound Score (vulns + scorecard + recency + license) with letter grade
Full resolved dependency tree with transitive deps
Detect typosquatting variants of a package name
Find the minimum safe version upgrade that resolves all known vulns
All known vulnerabilities for a package version, grouped by severity