A

@yawlabs/postgres-mcp

npm · v0.13.0 · 8,572 dl/week

PostgreSQL MCP server, read-only by default: query, schema introspection, EXPLAIN plans, index advisor, and DBA health checks.

Findings (0)

✓ No registry-level findings. (This is a metadata scan, not a code audit.)

Embed this badge

MCP security grade A
[![MCP security](https://vulnrable.com/api/mcpbadge?pkg=%40yawlabs%2Fpostgres-mcp&eco=npm)](https://vulnrable.com/mcp/yawlabs--postgres-mcp/)

Automated registry-metadata scan; not a code audit. Findings come from npm metadata published by the package owner and from public security advisories (OSV/GHSA) — not from our own assessment of the code.
Grade scanned 2026-09-14 · package count resolved 2026-08-18. A package fixed after that date will still show its earlier grade here.
Maintainer and think this is wrong or out of date? Get in touch — corrections are welcome.