lurq
PulseGate's liveness check found it on 14 Sep 2026; it is registered on GitHub and has been in the index since 14 Sep 2026. How this is checked
lurq verifies npm packages before AI coding agents install them. Its CLI and MCP server detect hallucinated and typosquatted packages, security advisories, deprecated APIs, version conflicts, and incompatible peer dependencies for developers.
Inferred · not functionally tested
Overview
6 featuresPurpose: Preventing AI coding agents from installing hallucinated, vulnerable, deprecated, or incompatible npm packages.
Inferred · not functionally tested
Audience: developers using AI coding agents
Inferred · not functionally tested
Functions: code_generation, agents
Inferred · not functionally tested
Interfaces: API: indicated (inferred, not tested) · MCP: indicated (inferred, not tested) · CLI: indicated (inferred, not tested) · Self-hosting: unknown
Recorded constraints: pricing: unknown · license: MIT · platforms: CLI, WEB · deployment: browser, cli, api_only, cloud_managed
Constraint provenance is unknown; confirm requirements with the publisher.
Record sources: lurq.run · github.com. These links do not verify the individual claims.
lurq is an AI security & guardrails project. Inferred · not functionally tested: It focuses on preventing AI coding agents from installing hallucinated, vulnerable, deprecated, or incompatible npm packages. Inferred · not functionally tested: It is built as a B2B product for developers using AI coding agents. Basis unknown · not verified: lurq is available on the web, the command line, and API.
lurq first shipped in 2026. Development happens publicly on GitHub with 862 commits in the last 90 days. Inferred · not functionally tested: Among its 6 catalogued features are package verification, typosquat detection, and security advisories. Inferred · not functionally tested: Catalogued interfaces include an MCP server.
Summary written by a language model from the project’s public pages.
Tasks: Inferred · not functionally tested
- Package verification
- Typosquat detection
- Security advisories
- Deprecated API checks
- Version resolution
- Peer conflict detection
Topics: Inferred · not functionally tested
Built with & integrations
- Next.js
- x-nextjs-prerender header · /_next/static/ in the HTML · __next_f in the HTML
- openai
- bgpt- in the HTML
- Vercel
- x-vercel-id header · x-vercel-cache header
- anthropic
- bclaude in the HTML
Trust & compliance
Indexing history
1What PulseGate has recorded for this listing
- Indexed14 Sep · 05:52 UTClurq seen via MCP Registry (official)Source: MCP Registry (official) · Open
Frequently asked questions about lurq
- What does lurq do?
- Inferred · not functionally tested: Lurq focuses on preventing AI coding agents from installing hallucinated, vulnerable, deprecated, or incompatible npm packages. It is catalogued under AI security & guardrails on PulseGate.
- Who is lurq for?
- Inferred · not functionally tested: lurq is a B2B product built for developers using AI coding agents.
- What platforms does lurq run on?
- Basis unknown · not verified: lurq runs on the web, the command line, and API.
- Is lurq still maintained?
- PulseGate's liveness check found it on 14 Sep 2026. Its GitHub repository shows 862 commits in the last 90 days.
- When did lurq launch?
- lurq first shipped in 2026.
- Is lurq open source?
- Basis unknown · not verified: lurq has a public GitHub repository.
- Does lurq have an API or integrations?
- Inferred · not functionally tested: Yes — lurq exposes an MCP server.
Similar projects
Closest matches by what these projects do