Skip to content

Cursor Dependency Vulnerability Tracker — package security advisories ($0.01/query) data_session_attach_escrow

How to: Cursor Dependency Vulnerability Tracker — package security advisories ($0.01/query) data_session_attach_escrow

client:Cursor transport:streamable-http tool:data_session_attach_escrow

Add Dependency Vulnerability Tracker — package security advisories ($0.01/query) to Cursor

  1. 01

    Open ~/.cursor/mcp.json and merge this in. Keep any servers already there.

{
  "mcpServers": {
    "data-dependency-vulnerability-malicious-package-security": {
      "url": "https://a2awire.com/mcp/data/ghsawatch-package-dependency-vulnerabilities-malicious-package-advisories-d21673/http"
    }
  }
}
  1. 02

    Save the file and restart Cursor.

  2. 03

    Ask for something data_session_attach_escrow does. Cursor lists the server's tools on connect and calls data_session_attach_escrow itself — you do not invoke it by name.

  3. 04

    If nothing happens, check the server is running and that Dependency Vulnerability Tracker — package security advisories ($0.01/query)'s identifier in your config matches the one above exactly.

Use .cursor/mcp.json in a project root instead to scope it to that project. Cursor merges both. Cursor docs

Same tool, other clients

This list was read from the server itself, by connecting to it and calling tools/list on 24 September 2026. It is what the server actually exposes, not what its listing claims.

Mutating and Read-only are read off each tool's name, not its schema — a hint, not a guarantee. The registry stores tool names only; connect the server for its live schemas.