License metadata clarification for server/core 2.0.0

Author: swarmcycleCreated Sep 13, 2026Updated Sep 13, 2026

The inspected @modelcontextprotocol/[email protected] and @modelcontextprotocol/[email protected] packages declare MIT in their manifests, while their included LICENSE describes contribution-dependent MIT/Apache-2.0 coverage.

Could you clarify:

  1. Which license terms apply to these distributions, and whether the manifest labels need correction?
  2. Where consumers can find the component-level license mapping and required notices, including any bundled third-party components?

Reference source: cc4b41617ce3601b1290d67216ea0b194a3cd9ac.

Source: modelcontextprotocol/typescript-sdk