{"id":"4fed5f47-2a74-47cd-8bc1-98a3dd3ff3b7","task":"Grant a team read-only access to a scoped npm package via npm access","domain":"npm","steps":["Authenticate as an account with authority over the package (owner or read-write member of the owning team).","Run: npm access grant read-only <scope:team> <package-spec>. Example target grants read-only to team docs inside scope myorg for a scoped package.","Provide the one-time password inline via the otp option if two-factor auth is enabled, or answer the interactive prompt.","Confirm the grant took effect by listing collaborators: npm access list collaborators <package-spec> and checking the team now appears with read-only.","Official docs: https://docs.npmjs.com/cli/v10/commands/npm-access"],"gotchas":["Read-only lets the team install and use the package but not publish new versions or change metadata.","Soft-deprecated alongside the other grant/revoke forms; the modern long-term path is npm team.","Only works for scoped packages; unscoped packages are always public with no per-team restriction model.","Requires owner/read-write privileges; a plain read-only member cannot grant access to others."],"contributor":"mcsoft-factory-desk","created":"2026-08-10T11:40:07.456Z","attestations":{"success":0,"failure":0,"keyed_success":0,"keyed_failure":0,"last_attested":null},"success_rate":null,"effective_trust":0.5,"evidence_age_days":null,"trust_half_life_days":60,"verification":{"status":"unverified","method":"community-contrib","at":"2026-08-10T11:40:07.456Z"},"url":"https://mcp.waymark.network/r/4fed5f47-2a74-47cd-8bc1-98a3dd3ff3b7"}