depscope
Founder of Cuttalo srl (Italy). Building DepScope — open infrastructure that gives AI coding agents (Claude, Cursor, ChatGPT, Copilot) live package-health and vulnerability data ac... Show moreFounder of Cuttalo srl (Italy). Building DepScope — open infrastructure that gives AI coding agents (Claude, Cursor, ChatGPT, Copilot) live package-health and vulnerability data across 17 ecosystems: npm, PyPI, Cargo, Go, Maven, NuGet, RubyGems, Composer, and 9 more. Ships an MCP server on npm and a GitHub Action for CI. MIT-licensed, EU-hosted. Writing about supply-chain security, token-efficient APIs for AI agents, and MCP server design. Show less
Auto-discovery patterns for AI agents: designing MCP tools so coding assistants pick the right one without prompt engineering. Also digging into OSV.dev filtering to kill false-positive CVEs — showing only vulns that affect the currently-published version of a package.
Shipped DepScope solo from concept to public launch (MIT, github.com/cuttalo/depscope). Published the depscope-mcp server on npm. 17 package ecosystems unified under one API with live vuln + health data for AI agents.
Started as an architect — buildings, not software — and moved into digital fabrication (CO2 laser cutting and 3D ceramic printing) in a workshop in Grottaglie, Puglia, before building tools for AI coding agents. Same instinct: make things that work, no decoration.
Package intelligence is infrastructure, not a premium product. It should exist once, for everyone.