Beautiful Visualizations For Your App's Dependencies 🪱
Utilities for working with npm packages 🪱
Security & License Compliance For Your App's Dependencies 🪱
Generate your app's security profile based on your test suite 🪱
AI observability SDK — decorators, tool tracing, job lifecycle, MCP server, agent proxy
Security Snapshot Testing Inside Your Jest Test Suite 🪱
Easy auditing & sandboxing for your JavaScript dependencies 🪱
Sandbox npm/pnpm/yarn/bun install with bwrap (Linux) or Docker (macOS) to keep secrets in the working directory and host $HOME out of reach of postinstall scripts.
The official TypeScript library for the Patronus API API
Setup wizard for Vellaveto — MCP Policy Gateway
ESLint security rules for Model Context Protocol (MCP) servers — catches SANDWORM_MODE credential harvesting, path traversal, command injection, and CVE patterns at dev time
Shai-Hulud Supply Chain Vulnerability Scanner - Detect compromised npm packages from the Shai-Hulud attacks (v1, v2, v3)