Upgrade Atelier
An explainable dossier for npm dependency upgrades, so 'should we bump this?' has a real answer.
Given a package and a version, Upgrade Atelier scores the risk of the upgrade: version distance, release cooldown, maintainer activity, transitive surface and metadata quality. Each factor is itemised so the decision can be argued with.
Specs can be saved, revised, exported as a report, or handed to an agent over MCP. It is what I built after spending too long on the same question by hand.
What made it interesting
- Reads the public npm registry, no API key needed
- Risk is itemised, so a teammate can disagree with one factor instead of the whole score