
Socket Security SocketDev מאת
Socket uses advanced code analysis and AI-powered risk detection to add security metrics to your NPM package pages and search results, defending your project against malware and security vulnerabilities in advance.
יש צורך ב־Firefox כדי להשתמש בהרחבה זו
נתוני העל של ההרחבה
צילומי מסך



על אודות הרחבה זו
Over the past decade, it's become clear that open source software has won. Sharing code freely has made it drastically cheaper and faster to build software – and tech innovation has accelerated as a result. But security has often been an afterthought.
We are a team of open source maintainers with over 1 billion monthly downloads to our names. Working on the frontlines of open source, we've witnessed firsthand how supply chain attacks have swept across our communities and damaged trust in open source.
The entire security industry is obsessed with identifying known vulnerabilities. There are hundreds of variations of CVE scanners, but they all miss the point. Looking for known vulnerabilities is reactive. Vulnerabilities take weeks or months to be discovered. In today's culture of fast development, a malicious dependency can be updated, merged, and running in production in days or even hours.
Unlike other tools, Socket detects and blocks supply chain attacks before they strike, mitigating the worst consequences. Socket uses deep package inspection to peel back the layers of a dependency to characterize its actual behavior.
Want to defend your entire organization against open-source attacks? Install the Socket Security GitHub app and get protected today!
We are a team of open source maintainers with over 1 billion monthly downloads to our names. Working on the frontlines of open source, we've witnessed firsthand how supply chain attacks have swept across our communities and damaged trust in open source.
The entire security industry is obsessed with identifying known vulnerabilities. There are hundreds of variations of CVE scanners, but they all miss the point. Looking for known vulnerabilities is reactive. Vulnerabilities take weeks or months to be discovered. In today's culture of fast development, a malicious dependency can be updated, merged, and running in production in days or even hours.
Unlike other tools, Socket detects and blocks supply chain attacks before they strike, mitigating the worst consequences. Socket uses deep package inspection to peel back the layers of a dependency to characterize its actual behavior.
Want to defend your entire organization against open-source attacks? Install the Socket Security GitHub app and get protected today!
דירוג החוויה שלך
הרשאותמידע נוסף
תוספת זו זקוקה להרשאות הבאות:
- גישה לנתונים שלך מכל האתרים
ייתכן שתוספת זו תבקש גם את ההרשאות הבאות:
- גישה לנתונים שלך עבור socket.dev
מידע נוסף
- קישורים לתוספת
- גרסה
- 1.4.1
- גודל
- 1.48 מ״ב
- עדכון אחרון
- לפני 5 חודשים (4 דצמ׳ 2024)
- קטגוריות קשורות
- רישיון
- כל הזכויות שמורות
- היסטוריית הגרסאות
- תגיות
הוספה לאוסף
עוד הרחבות מאת SocketDev
- אין דירוגים עדיין
- אין דירוגים עדיין
- אין דירוגים עדיין
- אין דירוגים עדיין
- אין דירוגים עדיין
- אין דירוגים עדיין