# dependency-management-mcp-server MCP server

Sonatype component intelligence: versions, security analysis, and Trust Score recommendations

## Links
- Registry page: https://www.getdrio.com/mcp/com-sonatype-dependency-management-mcp-server
- Repository: https://github.com/sonatype/dependency-management-mcp-server
- Website: https://www.sonatype.com

## Install
- Endpoint: https://mcp.guide.sonatype.com/mcp
- Auth: Not captured

## Setup notes
- Remote endpoint: https://mcp.guide.sonatype.com/mcp

## Tools
- getComponentVersion (getComponentVersion) - Returns detailed analysis of a specific dependency or multiple dependencies with metadata about quality, license
and security. Dependencies can be referred to as packages, components or libraries. They
can be transitive (brought in by other dependencies) or direct (explicitly added to the
project). Endpoint: https://mcp.guide.sonatype.com/mcp
- getLatestComponentVersion (getLatestComponentVersion) - Returns the latest version of a dependency or multiple dependencies with quality, license and security data.
Dependencies can be referred to as packages, components or libraries. They can be
transitive (brought in by other dependencies) or direct (explicitly added to the
project).
 Endpoint: https://mcp.guide.sonatype.com/mcp
- getRecommendedComponentVersions (getRecommendedComponentVersions) - Returns top dependency version recommendations ranked by Developer Trust Score with
security, licensing, and quality analysis. Developer Trust Score is a measure of quality,
security, licensing, and maintainability. Use this when selecting a new component to add
to a project (without version) or when upgrading an existing component (with version).
Dependencies can be referred to as packages, components or libraries. They can be
transitive (brought in by other dependencies) or direct (explicitly added to the
project). Endpoint: https://mcp.guide.sonatype.com/mcp

## Resources
Not captured

## Prompts
Not captured

## Metadata
- Owner: com.sonatype
- Version: 1.0.2
- Runtime: Streamable Http
- Transports: HTTP
- License: Not captured
- Language: Not captured
- Stars: Not captured
- Updated: Nov 22, 2025
- Source: https://registry.modelcontextprotocol.io
