Skip to content

MCP servers › so.helio › helio

MCP server · registry snapshot 2026-10-04

so.helio/helio

Open-source governance for MCP agents: useful autonomy without unlimited authority — the publisher's description

version 0.15.0TypeScriptApache-2.0streamable HTTP

Summary

so.helio/helio is a local MCP server listed in the official MCP registry at version 0.15.0. We have not tested it. It runs over a transport our sandbox does not start yet. This is our limit, not the server's.

Key facts

Runs
local package
Transport
streamable HTTP
Package
npm · listed version current
License
Apache-2.0
Dependencies
no known high or critical advisories
Repository
public
Last tested
not tested

Worth knowing before you connect it

  • Its package is signed and carries a build record naming its source.

Each line comes from a section below, with its source and date.

How fresh this is

Live-tested
no
Last tested
not tested
Registry data
snapshot 2026-10-04
Package and repository
checked 2026-10-06

Security testing

Has it been tested?

Feature #1

It runs over a transport our sandbox does not start yet. This is our limit, not the server's.

What it is

Does the registry listing match what we found?

Feature #6

The registry verifies a package once, when it is published, and does not re-check it. A difference below is about the listing, not a judgement of the publisher.

Registry saysWe foundResultSource · date
Version 0.15.0 on npmExists and can be installedmatchesnpm · 2026-10-06
Repository github.com/gethelio/helioOpens publiclymatchesapi.github.com · 2026-10-06

Can it be installed, and is it up to date?

Version pin · advisories

Listed version

Registry lists
0.15.0
Latest stable
0.15.0
Status
current
Withdrawn
no

Source: registry.npmjs.org · 2026-10-06. About the version the registry lists; a manual install may resolve to a different one.

Dependency advisories

critical0high0moderate0low0

Counted in the full dependency tree as resolved on 2026-10-08 (npm audit). Bars share one scale. The package itself has no known vulnerability (OSV.dev).

Integrity, provenance, license

Integrity
sha512-Q6rZ2XsWi9ESu8Df0…
Signature
signed and attested
License
Apache-2.0

Source: the package registry · 2026-10-06.

Usage

Downloads
460 in the last month

Source: api.npmjs.org · 2026-10-06.

Who made it?

Feature #7 · lineage

Facts about the publisher. We do not turn them into a trust score.

Namespace
so.helio
GitHub owner
an organization (gethelio)
Build record
signed and attested
Repository
github.com/gethelio/helio
Stars
14
Repository age
91–180 days
Last push
0–30 days ago
Archived
no

Source: the registry entry and api.github.com · 2026-10-06.

Choosing

Common questions about so.helio/helio

Answered from the data above

Has so.helio/helio been security tested?

Not yet. It runs over a transport our sandbox does not start yet. This is our limit, not the server's.

Is the listed version current?

Yes. The registry lists 0.15.0, the latest stable release on npm.

Where is the source code of so.helio/helio?

In github.com/gethelio/helio, which opens publicly.

Reference

How is it classified?

18 fields

One value per field, each with its source. Fields written by AI models are marked. A field with no value says why.

TopicAI-classified
no value
No value: the two AI models (Gemini and Claude) disagreed, so neither answer is shown.
Pricing modelAI-classified
no value
No value: the AI answer was held back because the quoted text did not clearly support it.
Programming language
TypeScript
api.github.com · 2026-10-08
Hosting type
local package
registry · 2026-10-04
MCP capability
not checked
not read (no session)
Transport
streamable HTTP
registry · 2026-10-04
Required credentials
none declared
registry · no declaration is not a guarantee
Package registry
npm
registry · 2026-10-04
Freshness
0–30 days
registry updatedAt · 2026-10-04
Lifecycle status
active
registry · 2026-10-04
License class
permissive
package registry · 2026-10-06
Integrity hash
declared (sri)
package registry · 2026-10-06
Signature / provenance
signed and attested
package registry · 2026-10-06
Dependency advisories
none known
npm audit · 2026-10-08
Popularity
460 downloads a month
package registry · 2026-10-06
Publisher signals
owner: an organization · repository age: 91–180 days · stars: 10–99 · build record: signed and attested
api.github.com · 2026-10-06
Maintenance
active
api.github.com · 2026-10-06
Environment
your machine
where it runs, from the hosting type

“Not stated” means the source did not state it; “does not apply” means it does not apply to this kind of server; “our limit” means our own lookup failed.

Cite or correct this page

Sources and corrections

Suggested citation

ProtocolProbe. “so.helio/helio: MCP server record.” Data checked 2026-10-06. https://protocolprobe.com/mcp/servers/so.helio/helio

Figures are valid for the date shown. Our facts on this page are CC BY 4.0: reuse them with a link and the check date. Quoted text (the publisher’s descriptions, website quotes, tool names) is not ours to license.

As JSON: this record in the API · API documentation.

Something wrong, or is this yours?

If a fact here is wrong, tell us and we will re-check it. If you operate this server, you can authorize a full test.

Write to hello@protocolprobe.com · corrections log · methodology