Does Sonatype have an MCP server?

Yes Official

Sonatype maintains an official MCP server.

Covers Sonatype Guide dependency intelligence (versions, vulnerabilities, Trust Score), not Nexus Repository or Lifecycle administration.

Verified 2026-09-29 against vendor docs
Access
Remote server
Endpoint
https://mcp.guide.sonatype.com/mcp
Maintainer
Sonatype
Stars
74
Last commit
9mo ago
The receipts
Vendor-hosted https://mcp.guide.sonatype.com/mcp

A remote server run by Sonatype itself — nothing to install. Documented at guide.sonatype.com.

Official repository sonatype/dependency-management-mcp-server
★ 74 pushed 2026-01-14 Stale
Connect it

Hosted by the vendor — no install, connect over HTTP with OAuth or a token.

Add it from the terminal, then restart your session:

terminal
claude mcp add --transport http sonatype https://mcp.guide.sonatype.com/mcp

Add --scope user to make it available in every project.

Setup sponsor · open Put your product right here, under the setup steps of all 645 verdict pages. One sponsor at a time. $149 first month, then $399/mo →
Questions
Does Sonatype have an official MCP server?

Yes. Sonatype maintains an official MCP server, hosted at https://mcp.guide.sonatype.com/mcp. The source lives at sonatype/dependency-management-mcp-server on GitHub.

How do I connect Sonatype to Claude?

Add https://mcp.guide.sonatype.com/mcp as a custom connector under Settings → Connectors in Claude Desktop or claude.ai, or run "claude mcp add --transport http sonatype https://mcp.guide.sonatype.com/mcp" in Claude Code.

Do I need to install anything to use the Sonatype MCP server?

No. It is a remote server hosted by Sonatype, so your MCP client connects to it over HTTP. You authenticate with the vendor rather than installing a package.

How is this verdict verified?

Published to the MCP Registry under Sonatype's verified namespace com.sonatype; the hosted endpoint mcp.guide.sonatype.com/mcp is documented at guide.sonatype.com/mcp and in the sonatype/dependency-management-mcp-server repo, and answers MCP initialize with 401 (personal API token required). GitHub metadata is refreshed every six hours.

How we know

Published to the MCP Registry under Sonatype's verified namespace com.sonatype; the hosted endpoint mcp.guide.sonatype.com/mcp is documented at guide.sonatype.com/mcp and in the sonatype/dependency-management-mcp-server repo, and answers MCP initialize with 401 (personal API token required).

  • github data refreshed 2026-09-29, then every 6 hours
  • vendor docs verified on 2026-09-29

Spotted something out of date? Tell us — corrections ship same-day.

Also in Developer Tools

See all Developer Tools servers →