@ansvar/chinese-law-mcp
Chinese law MCP server — 1,188 national laws, administrative regulations, and departmental rules with 62,981 provisions from NPC National Law Database (flk.npc.gov.cn) and CAC (cac.gov.cn). Full-text search, citation validation, legal stance builder. Part
Supply chain provenance
Status for the latest visible version.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| phantom-deps | phantom-dep:mammoth | AI (phantom-deps): mammoth is declared as a runtime dep and used in ingest scripts; phantom-dep heuristic false positive for this package. | ai | |
| install-scripts | install-script:postinstall | AI (install-scripts): Postinstall only runs 'tsc' build if dist is missing; no network access or arbitrary code execution. | ai |
v3.0.0
2 findingsScript: test -d dist || npm run build || true
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v1.1.2
2 findingsScript: test -d dist || npm run build || true
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.