spaceraccoon / npm-zooLinks
A zoo for malicious NPM packages
☆20Updated 2 years ago
Alternatives and similar repositories for npm-zoo
Users that are interested in npm-zoo are comparing it to the libraries listed below
Sorting:
- Security advisories for Node.js and the JavaScript ecosystem.☆41Updated 4 years ago
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- 🌍 Normalized repository URLs for every package in the npm registry. Updated daily.☆89Updated last week
- Policy management tool for Node.js☆22Updated 2 years ago
- A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC☆32Updated 6 months ago
- Module to prevent SSRF when sending requests in NodeJS. Blocks request to local and private IP addresses☆22Updated 5 months ago
- A developer-friendly secrets detection tool for CI and pre-commit hooks based on Yelp's detect-secrets☆51Updated 3 years ago
- Discussion area for security aspects of ECMAScript☆64Updated 7 years ago
- ESLint plugin with rules for finding security issues in React projects.☆18Updated 2 weeks ago
- Make it easy to probe the strengths and weaknesses of a hardened Node.js stack☆19Updated 6 years ago
- A Node.js middleware for Express that implements Security.txt - A Method for Web Security Policies☆18Updated 3 years ago
- A JavaScript sandbox using proxies☆20Updated 4 years ago
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆238Updated 2 months ago
- Bundlephobia Web Extension☆14Updated 6 years ago
- Prompt your users to donate after `npm install`☆14Updated 4 years ago
- TSLint security rules☆69Updated 4 years ago
- JavaScript parser and sandbox☆78Updated 8 years ago
- Visualize your project security vulnerabilities as a pie chart in the terminal☆25Updated 2 years ago
- Hands-on practical use of HTTP security headers as browser security controls to help secure web applications☆18Updated 2 years ago
- Provide a package name, get a list of every version, and who published it.☆24Updated last year
- Derive property based testing fast-check into a fuzzer for REST APIs☆39Updated 4 years ago
- A tool for detecting regular expression denial-of-service vulnerabilities in Android apps.☆35Updated 9 years ago
- Clone a Node.js HTTP response stream☆30Updated last year
- EcmaScript proposal to provide brand checks without exceptions☆36Updated 4 years ago
- rules for scanjs functionality☆28Updated 4 years ago
- List of sensitive fields that should be masked, obfuscated, or purged for security purposes☆22Updated last year
- Create a readable Node.js stream that produces no data (or optionally blank data) or a writable stream that discards data☆52Updated 2 years ago
- Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]☆42Updated last year
- ☆14Updated this week
- `document.domain` intentionally weakens the only security boundary we have. Perhaps we can dump it?☆17Updated last year