Packj flags malicious/risky open-source packages
1.9K
Packj (pronounced package) is an auditing tool to analyze open-source software packages for "risky" attributes that make them vulnerable to supply chain attacks. This is the tool behind our large-scale security analysis platform Packj.dev that continuously vets packages and provides free reports.
Content type
Image
Digest
sha256:1db899f10…
Size
301 MB
Last updated
almost 2 years ago
docker pull ossillate/packj