Open Issues Need Help
View All on GitHub Refresh the typosquat corpus on a schedule about 8 hours ago
enhancement good first issue help wanted
Stop malicious npm installs before they run. Detects typosquats, AI-hallucinated package names (slopsquatting), and known malware from OSV. Zero dependencies, works offline, blocks at preinstall.
TypeScript
#ai-agents#cli#dependency-security#devsecops#hacktoberfest#malware#malware-detection#nodejs#npm#npm-audit#osv#package-manager#security#slopsquatting#software-supply-chain#static-analysis#supply-chain-security#typescript#typosquatting#zero-dependencies