snyk / vulncostLinks
Find security vulnerabilities in open source npm packages while you code
☆210Updated 3 years ago
Alternatives and similar repositories for vulncost
Users that are interested in vulncost are comparing it to the libraries listed below
Sorting:
- Fast and simple way to check any HTTP Headers☆46Updated 2 years ago
- Collection of security best practices for package managers.☆162Updated 2 years ago
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆237Updated last week
- ESLint plugin to detect and stop Trojan Source attacks☆77Updated 2 years ago
- Security advisories for Node.js and the JavaScript ecosystem.☆41Updated 4 years ago
- TSLint security rules☆69Updated 5 years ago
- Audits an NPM package.json file to identify known vulnerabilities.☆229Updated 2 months ago
- A developer-friendly secrets detection tool for CI and pre-commit hooks based on Yelp's detect-secrets☆51Updated 3 years ago
- A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC☆33Updated 7 months ago
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 4 years ago
- Detect trojan source attacks that employ unicode bidi attacks to inject malicious code☆47Updated 2 years ago
- NodeJS runtime protection for supply chain attacks☆141Updated 3 years ago
- JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬.☆256Updated this week
- proxy designed to reduce the attack surface of npm publish☆119Updated last month
- njsscan is a semantic aware SAST tool that can find insecure code patterns in your Node.js applications.☆409Updated 9 months ago
- ESLint security plugin for Node.js☆104Updated last year
- Mitigate security concerns of Dependency Confusion supply chain security risks☆49Updated 2 months ago
- Deadshot is a Github pull request scanner to identify sensitive data being committed to a repository☆191Updated 10 months ago
- Visualize your project security vulnerabilities as a pie chart in the terminal☆25Updated last month
- Controls and monitors organization permissions across GitHub, Slack and GSuite. Built with ❤️ by The Electron Team☆148Updated 3 months ago
- ☆192Updated 10 months ago
- 🛕 Reuse GitHub Actions workflows across repositories☆267Updated 4 years ago
- Create a Content-Security-Policy for a website based on the statically detectable relations☆77Updated 3 months ago
- ☆40Updated 5 years ago
- `timers/promises` for client and server.☆18Updated 4 years ago
- ESLint plugin with rules for finding security issues in React projects.☆19Updated 2 months ago
- Tracking framework performance and usage at scale☆153Updated 11 months ago
- A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.☆61Updated 2 months ago
- ☆52Updated this week
- Lint an npm or yarn lockfile to analyze and detect security issues☆812Updated 4 months ago