2.07/ 5.00
cautionBeta
Mar 5, 2026 at 8:12 AM6 signals analysedNo manual reviews · fully automated
Trust Signal Breakdown
medium23 sub-signals across 6 dimensions

CVEs, dependency health, and supply chain integrity

3 of 3 sub-signals with data

Known CVEs40%5.0

No known CVEs

via OSV.dev

Dependency Health30%5.0

12 dependencies (minimal)

via npm / PyPI

Supply Chain30%4.8

16 transitive CVEs found (penalty: -0.25)

via npm provenance

Uptime, latency, error rates, and incident history

4 of 4 sub-signals with data

Uptime35%5.0

100.00% over 5 checks

via Health checks

Response Latency25%4.0

p99: 237ms, p50: 148ms

via Health checks

Error Rate20%5.0

0.00% error rate (0/5)

via Health checks

Incident History20%4.0

1 incidents in last 90 days

via Incidents table

Commit recency, release cadence, issue response, CI/CD

0 of 4 sub-signals with data

Commit Recencyno data

Weight redistributed to sub-signals with data

Release Cadenceno data

Weight redistributed to sub-signals with data

Issue Responseno data

Weight redistributed to sub-signals with data

CI/CD Presenceno data

Weight redistributed to sub-signals with data

Downloads, stars, dependents, and growth trajectory

2 of 4 sub-signals with data

Download Volume67%1.0

10 weekly downloads

via npm / PyPI

GitHub Starsno data

Weight redistributed to sub-signals with data

Dependent Packagesno data

Weight redistributed to sub-signals with data

Growth Trend33%1.0

-88.9% week-over-week

via npm

License, documentation, security policy, changelog

0 of 4 sub-signals with data

Open Sourceno data

Weight redistributed to sub-signals with data

Documentationno data

Weight redistributed to sub-signals with data

Security Policyno data

Weight redistributed to sub-signals with data

Changelogno data

Weight redistributed to sub-signals with data

Track record, org maturity, community standing

4 of 4 sub-signals with data

Track Record30%0.0

via Fabric index

Org Maturity30%0.0

via GitHub

Community Standing20%0.0

via GitHub

Cross-Platform20%0.0

via Registry scan

About this score
Scored across 23 sub-signals in 6 dimensionsScoring engine v1 (beta) — actively being expandedPhase 1: Core sub-signal architecture (live)Phase 2: Permission scope & expanded collection (in progress)
Trust AssessmentAI Assessment

MCP-сервер для поиска UI-компонентов с использованием RAG на базе LanceDB и GigaChat

Package Availability (30d)
100.00%
p50: 148ms · p99: 237ms
Avg Latency
147ms
averaged across 30d health checks
Weekly Downloads
10-89%
npm weekly
Incidents & Alertslast 90 days
Mar 5Trust score decreased by 0.922.07
Feb 22ds-rag-mcp added to Trust Index2.95
Showing 2 of 2 events
Score History15 snapshots
5.003.752.501.250.00
Feb 22Mar 5
Community & Ecosystemadoption signals
10
Weekly Downloads
npm
Supply Chain & Dependenciestrust chain
@lancedb/lancedb
npm · ^0.19.1
@langchain/community
npm · ^0.3.57 · 3 CVEs1L2M
@langchain/core
npm · ^0.3.36 · 1 CVE1H
@modelcontextprotocol/sdk
npm · ^1.20.0 · 3 CVEs3H
dotenv
npm · ^16.4.5
express
npm · ^5.1.0 · 5 CVEs2L3M
Showing 6 of 12 dependencies
Data Sources6 indexed

Are you the publisher?

Claim this profile to unlock deeper evaluation, real-time monitoring,
and trust signals that help agents discover your service.

Share this Trust Score

Generate a scorecard image optimised for X, LinkedIn and other social platforms.

⬇ Download Score Card