← Home

@mastra/mcp-docs-server

MCP server for accessing Mastra.ai documentation, changelogs, and news.

62
Versions
Apache-2.0
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

abhiaiyersmthomasrase-calcsamnikaiyertylerbarneswardpeet

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
phantom-deps phantom-dep:@mastra/core AI (phantom-deps): Same-org sibling dep; declared in both deps and devDeps, phantom detection is a false positive for this package. ai
phantom-deps phantom-dep:jsdom AI (phantom-deps): jsdom is a runtime dep used indirectly; phantom-dep heuristic fires on config-only references, stable FP for this package. ai
phantom-deps phantom-dep:@modelcontextprotocol/sdk AI (phantom-deps): MCP SDK is a core runtime dep; phantom-dep fires on config references, stable FP for this package. ai

Versions (showing 62 of 62)

Version Deps Published
1.2.10 6 / 16
1.2.9 6 / 16
1.2.8 6 / 16
1.2.7 6 / 16
1.2.6 6 / 16
1.2.5 6 / 16
1.2.4 6 / 16
1.2.3 6 / 16
1.2.2 6 / 16
1.2.1 6 / 16
1.2.0 6 / 16
1.1.48 6 / 16
1.1.46 6 / 16
1.1.45 6 / 16
1.1.44 6 / 16
1.1.43 6 / 16
1.1.42 6 / 16
1.1.41 6 / 16
1.1.40 6 / 16
1.1.39 6 / 16
1.1.38 6 / 16
1.1.37 6 / 16
1.1.36 6 / 16
1.1.35 6 / 16
1.1.34 6 / 16
1.1.33 6 / 16
1.1.32 6 / 16
1.1.31 6 / 16
1.1.30 6 / 16
1.1.29 6 / 16
1.1.28 6 / 16
1.1.27 6 / 16
1.1.26 6 / 16
1.1.25 6 / 16
1.1.24 6 / 16
1.1.23 6 / 16
1.1.22 6 / 16
1.1.21 6 / 16
1.1.20 6 / 16
1.1.19 6 / 16
1.1.18 6 / 16
1.1.17 6 / 16
1.1.16 6 / 16
1.1.15 6 / 16
1.1.14 6 / 16
1.1.13 6 / 16
1.1.12 6 / 16
1.1.11 6 / 16
1.1.10 6 / 16
1.1.9 6 / 16
1.1.8 6 / 16
1.1.7 6 / 16
1.1.6 6 / 16
1.1.5 6 / 16
1.1.4 6 / 16
1.1.3 6 / 16
1.1.2 6 / 16
1.1.1 6 / 16
1.1.0 6 / 16
1.0.2 6 / 15
1.0.1 6 / 15
1.0.0 6 / 15

v1.2.10

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.2.9

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.2.8

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.2.7

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.2.6

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.2.5

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.2.4

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.2.3

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.1

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.0.0

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.