Skip to content
verify mcp Beta VerifyMCP is currently in beta. If you notice any issues, get in touch and we’ll put it right.

io.github.smeet666/mcp-ashby

NPM · MCP-ASHBY · 2 COMPONENTS · SCANNED AUG 20

Search public Ashby job boards: resolve a company, read its openings and the pay it publishes.

66 Trust /100
Trust breakdown (6 categories)

How this component scores in each security and reliability category. Every signal is checked automatically from public evidence about the published package, including repeated runs of it in an isolated sandbox, and we only credit what we can confirm. How we score →

Supply Chain Security98
  • No malware found by supply-chain analysis.Pass
  • No known CVEs affecting this package version or its production dependencies.Pass
  • No install/post-install scripts declared.Pass
  • 30 of 95 dependencies flagged as unhealthy. View diagnostics → Partial
Provenance & Transparency48
  • Source repository is publicly reachable at the declared URL. View diagnostics → Pass
  • Provenance check failed: no build-provenance attestation is published. See how to fix → View diagnostics → Fail
  • Clear OSI-approved license (MIT).Pass
  • Actively maintained (last published 5 days ago).Pass
  • Publishes a security disclosure policy (SECURITY.md).Pass
Schema Quality & AI Usability63
  • AI-judged instruction clarity (good).Pass
  • Context-footprint check failed: tool/resource definitions use about 1109 tokens (~221/item across 5 items; 5 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
  • Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management0
  • Stability not yet verified: not enough scan history yet (needs a 30-day window).Unverified
Tool Coverage91
  • 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
  • 70% of tool parameters carry a description.Partial
  • Structured output schemas are declared (100% of tools); any adoption earns full credit.Pass
Capabilities100
  • Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass

Unverified: 1 category

A category scored 0 because we could not verify it: a data source with nothing on this package, evidence we could not reach, or a check we could not run. We only credit what we can confirm.

Install

Add this component to your MCP client. Where a client-specific snippet is available, pick your client below and copy it straight into your config; otherwise use the connection detail shown.

npm · mcp-ashby

# add to Claude Code
claude mcp add smeet666-mcp-ashby -- npx -y mcp-ashby
# add to Codex CLI
codex mcp add smeet666-mcp-ashby -- npx -y mcp-ashby
// opencode.json
{
  "$schema": "https://opencode.ai/config.json",
  "mcp": {
    "smeet666-mcp-ashby": {
      "type": "local",
      "command": [
        "npx",
        "-y",
        "mcp-ashby"
      ],
      "enabled": true
    }
  }
}
# add to OpenClaw
openclaw mcp add smeet666-mcp-ashby --command npx --arg -y --arg mcp-ashby
# ~/.hermes/config.yaml
mcp_servers:
  smeet666-mcp-ashby:
    command: "npx"
    args: ["-y", "mcp-ashby"]
// mcp.json
{
  "mcpServers": {
    "smeet666-mcp-ashby": {
      "command": "npx",
      "args": [
        "-y",
        "mcp-ashby"
      ]
    }
  }
}
Changelog

Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.

  • 14 Aug 26 66

    First indexed and scored.

Diagnostics

Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.

Captured 20 Aug 2026 · Analysed npm/mcp-ashby@1.0.0

Provenance No attestation

The registry publishes no build provenance for this version, so there is nothing to verify.

Result No attestation
Ecosystem npm
Dependencies 95 packages
Packages resolved 95
Stale 30
Tree resolution Complete
MCP tools · 5 exposed · ~802 tokens

The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability.

Tool Tokens
compare_compensation ~193

Put the pay ranges of one Ashby board side by side, one component at a time and one period at a time. Nothing is converted between currencies, summed across components or averaged: a third of the postings publish no range at all, and they are named rather than dropped.

NameTypeReqDescription
boardstringyesA company name, or an Ashby board token.
componentstringOne component at a time: a share of capital and a salary do not add up.
department
intervalstringThe period compared, 1 YEAR unless named. Postings on another period are listed apart, unconverted.
job_idsarrayA list of posting identifiers search_jobs returned, one to 50 of them.
limitintegerHow many postings to compare.
querystringWords to look for in the titles.
team
NameTypeReqDescription
boardstringyes
componentstringyes
currencies_presentarrayyesNamed, because rows in different currencies do not rank against each other.
intervalstringyes
not_publishedarrayyesPostings whose company publishes no range, named rather than dropped.
notesarrayyes
other_intervalsarrayyesPostings on another period, left unconverted.
rowsarrayyes

No examples provided.

get_job ~113

Read one Ashby posting in full: its locations, its description and the pay ranges its company published. Ashby addresses a posting by board and identifier, both of which search_jobs returns.

NameTypeReqDescription
boardstringyesA company name, or an Ashby board token.
descriptionstringThe description runs to thousands of characters. html is the company's own markup, unrewritten.
include_compensationboolean
job_idstringyesThe identifier search_jobs returned for this posting.
NameTypeReqDescription
apply_urlstringyes
boardstringyes
compensationyesNull when the caller asked for no compensation, which states nothing about the company.
compensation_summaryyesNull when the company withholds its pay ranges, which is never zero.
departmentstringyes
descriptionyesNull when the caller asked for no description.
employment_typestringyes
idstringyes
is_listedbooleanyesFalse marks a posting Ashby serves by direct link alone rather than on the board.
is_remoteyes
job_urlstringyes
locationobjectyes
notesarrayyes
published_atstringyesISO 8601 with the offset Ashby publishes.
secondary_locationsarrayyes
sourceobjectyes
teamstringyes
titlestringyes
workplace_typeyesNull when the company records none, which is never the same as on site.

No examples provided.

list_filter_values ~79

List the words one Ashby board actually uses, with how many postings carry each, and how many declare nothing. Every board keeps its own departments and teams, so a filter written from another board's vocabulary narrows to nothing.

NameTypeReqDescription
boardstringyesA company name, or an Ashby board token.
facetstring
NameTypeReqDescription
boardstringyes
facetsobjectyes
notesarrayyes
sibling_spellingsarrayyesSpellings on this board that name what looks like one place, so a caller asks for both rather than picking one.
total_jobsintegeryes
undeclaredobjectyesPostings a criterion could say nothing about, counted per field. A posting that records no workplace is not a posting on site.

No examples provided.

resolve_board ~78

Turn a company name into the token that addresses its Ashby job board, and report every form that answered. search_jobs does this on its own, so call this when a name returns nothing and you want to see the spellings that were tried.

NameTypeReqDescription
namestringyesA company name, or an Ashby board token you already know.
NameTypeReqDescription
foundarrayyes
inputstringyes
notesarrayyes
triedarrayyesThe forms actually sent, in order.

No examples provided.

search_jobs ~339

Search the open postings of named companies on Ashby. Ashby publishes no index across its customers, so companies are required. Every filter runs here rather than at the source, and the answer reports how many postings declared nothing about a field it filtered on. Rows carry no description: read one posting with get_job.

NameTypeReqDescription
companiesarrayyesCompany names or board tokens, one to 10. Each costs a request and a whole board, which is why 5 at a time is the comfortable number.
country
currencystringA three-letter currency code, as in EUR or USD.
department
employment_type
has_compensationbooleanKeeps only postings whose company publishes a pay range.
is_remotebooleanKeeps only postings that declare it. Postings recording nothing are counted in undeclared rather than treated as on site.
limitintegerHow many postings to return.
location_containsstringPart of a location line.
offsetintegerHow many postings to skip.
published_afterstringAn ISO 8601 date.
querystringWords to look for.
salary_intervalstringThe period salary_min belongs to, 1 YEAR unless named. An hourly amount is never weighed against a yearly floor.
salary_minnumberA floor for the salary component.
search_instringWhere query is looked for. Descriptions run to thousands of characters each.
sortstring
team
workplace_type
NameTypeReqDescription
filters_appliedobjectyes
jobsarrayyesNo descriptions, at any limit.
notesarrayyes
per_companyarrayyes
returnedintegeryesPostings in this answer, after limit and offset.
total_matchedintegeryesPostings the criteria kept.
total_on_boardintegeryesPostings the boards read hold, all of them.
undeclaredobjectyesPostings a criterion could say nothing about, counted per field. A posting that records no workplace is not a posting on site.

No examples provided.