snyk / vulncostLinks
Find security vulnerabilities in open source npm packages while you code
☆211Updated 3 years ago
Alternatives and similar repositories for vulncost
Users that are interested in vulncost are comparing it to the libraries listed below
Sorting:
- Fast and simple way to check any HTTP Headers☆46Updated 2 years ago
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆237Updated 3 months ago
- Security advisories for Node.js and the JavaScript ecosystem.☆40Updated 4 years ago
- Collection of security best practices for package managers.☆164Updated 3 years ago
- TSLint security rules☆69Updated 5 years ago
- ESLint plugin to detect and stop Trojan Source attacks☆79Updated last month
- A developer-friendly secrets detection tool for CI and pre-commit hooks based on Yelp's detect-secrets☆52Updated 3 years ago
- A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC☆32Updated 11 months ago
- Detect vulnerable regexes in your project. REDOS, catastrophic backtracking.☆338Updated 3 years ago
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 4 years ago
- ☆56Updated last week
- Mitigate security concerns of Dependency Confusion supply chain security risks☆50Updated 5 months ago
- Deadshot is a Github pull request scanner to identify sensitive data being committed to a repository☆191Updated last year
- NodeJS runtime protection for supply chain attacks☆142Updated 3 years ago
- njsscan is a semantic aware SAST tool that can find insecure code patterns in your Node.js applications.☆418Updated last year
- ESLint security plugin for Node.js☆106Updated last year
- Detect Glassworm & trojan source attacks that employ unicode bidi attacks to inject malicious code☆57Updated 3 weeks ago
- ☆191Updated last year
- Some thoughts on how Node.js might respond to a changing security environment☆173Updated 6 years ago
- A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.☆61Updated 6 months ago
- Controls and monitors organization permissions across GitHub, Slack and GSuite. Built with ❤️ by The Electron Team☆149Updated 3 weeks ago
- proxy designed to reduce the attack surface of npm publish☆119Updated last week
- 🛕 Reuse GitHub Actions workflows across repositories☆267Updated 4 years ago
- Hands-on practical use of HTTP security headers as browser security controls to help secure web applications☆18Updated 2 years ago
- Tool to export test reports from the Snyk CLI to HTML.☆101Updated 2 weeks ago
- The goal of this project is to provide additional features on top of the existing npm audit options☆129Updated 3 weeks ago
- Derive property based testing fast-check into a fuzzer for REST APIs☆39Updated 4 years ago
- ☆41Updated 5 years ago
- ESLint plugin with rules for finding security issues in React projects.☆19Updated 5 months ago
- ☆48Updated 2 months ago