snyk / vulncost
Find security vulnerabilities in open source npm packages while you code
☆205Updated 2 years ago
Alternatives and similar repositories for vulncost:
Users that are interested in vulncost are comparing it to the libraries listed below
- Collection of security best practices for package managers.☆162Updated 2 years ago
- Fast and simple way to check any HTTP Headers☆45Updated last year
- ☆190Updated 3 months ago
- ESLint plugin to detect and stop Trojan Source attacks☆76Updated 2 years ago
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆234Updated 3 months ago
- Audits an NPM package.json file to identify known vulnerabilities.☆225Updated 3 months ago
- A developer-friendly secrets detection tool for CI and pre-commit hooks based on Yelp's detect-secrets☆50Updated 2 years ago
- TSLint security rules☆70Updated 4 years ago
- 🛕 Reuse GitHub Actions workflows across repositories☆265Updated 4 years ago
- Detect trojan source attacks that employ unicode bidi attacks to inject malicious code☆47Updated 2 years ago
- proxy designed to reduce the attack surface of npm publish☆114Updated this week
- A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC☆33Updated last month
- ☆49Updated this week
- JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬.☆231Updated 2 weeks ago
- Detect vulnerable regexes in your project. REDOS, catastrophic backtracking.☆320Updated 3 years ago
- A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.☆55Updated 5 months ago
- JavaScript code and supporting files for working with the 'Static Analysis Results Interchange Format' (SARIF, see https://github.com/oas…☆27Updated 8 months ago
- Awesome Snyk community contributions, champions, integrations, blogs, tools and more 💜☆44Updated 2 years ago
- Tracking framework performance and usage at scale☆152Updated 4 months ago
- Scans every git push to your Github organisations to find unwanted secrets.☆88Updated last year
- Controls and monitors organization permissions across GitHub, Slack and GSuite. Built with ❤️ by The Electron Team☆141Updated 4 months ago
- Derive property based testing fast-check into a fuzzer for REST APIs☆39Updated 3 years ago
- Mitigate security concerns of Dependency Confusion supply chain security risks☆46Updated 2 years ago
- An NPM module that displays Github Action progress in the terminal and aims to improve your development experience by printing status in …☆404Updated 2 years ago
- Lint an npm or yarn lockfile to analyze and detect security issues☆791Updated 5 months ago
- Create a Content-Security-Policy for a website based on the statically detectable relations☆76Updated 10 months ago
- ☆39Updated 4 years ago
- A library to check for compromised passwords☆98Updated last week
- A documentation and tracking project with the goal of making package management systems more secure.☆50Updated 3 years ago