» Tag
npm
15 postsMalicious Jscrambler NPM Package Versions Deploy Infostealer
A supply chain attack on the jscrambler npm package highlights risks to developer credentials.
Disrupting Supply Chain Attacks on NPM and GitHub Actions
Recent updates on npm and GitHub Actions aim to disrupt supply chain attacks.
DepsGuard – A Native Cross-Platform Security Tool
DepsGuard scans npm and other managers for security vulnerabilities, enhancing protection against supply chain attacks.
CommitBrief — AI code reviews, right in your terminal
A provider-agnostic, local-first CLI that reviews your staged changes, a historic range, or a whole GitHub pull request. Zero telemetry, no server. Free and open source.
commitbrief.comAxiom UI: An Open-Source UI Library Designed for LLMs
Axiom UI is an open-source UI library optimized for LLMs, featuring 12 components available on npm.
How TypeScript Developers Can Avoid Malicious Package Attacks
Learn how TypeScript developers can protect against malicious npm package attacks.