An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

npmjs.org "vulnerability" keyword

@beaverscan/cli 1.1.1
BeaverScan CLI - Security code scanner for JavaScript/TypeScript
4 versions - Latest release: 6 months ago - 7 downloads last month - 1 maintainer
@cyberhub/trust-dompurify 1.0.0
Security Trust Report: dompurify@3.3.3 — 65/100 (B, standard). 13 vulnerabilities found. Maintain...
1 version - Latest release: about 1 month ago - 34 downloads last month - 1 maintainer
dependency-review-cli 1.3.2
A CLI tool for reviewing dependency changes and vulnerabilities using the GitHub API
6 versions - Latest release: 8 months ago - 16 downloads last month - 0 stars on GitHub - 1 maintainer
@cyberhub/trust-zen-repo-ui 1.0.0
Security Trust Report: @zen-repo/ui@0.0.4 — 62/100 (C+, standard). Maintainer risk, supply chain ...
1 version - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-symbioticsec-code 1.0.4
Security Trust Report: @symbioticsec/code@0.3.1 — 63/100 (C+, standard). Maintainer risk, supply ...
5 versions - Latest release: 15 days ago - 1 maintainer
@cyberhub/trust-nuxt 1.0.1
Security Trust Report: nuxt@4.4.2 — 54/100 (C, standard). 5 vulnerabilities found. Maintainer ris...
2 versions - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-x-essential-lib 1.0.0
Security Trust Report: x-essential-lib@0.9.31 — 63/100 (C+, standard). Maintainer risk, supply ch...
1 version - Latest release: about 1 month ago - 1 maintainer
oss-health-scan 1.6.0
Scan npm dependencies for abandoned packages, outdated versions (libyear), and known CVEs (OSV.de...
6 versions - Latest release: about 2 months ago - 1 maintainer
@cyberhub/trust-amiudmodz 1.0.0
Security Trust Report: amiudmodz@4.1.0 — 57/100 (C+, standard). Maintainer risk, supply chain ana...
1 version - Latest release: about 1 month ago - 1 maintainer
@tocharianou/mcp-shodan 1.0.1
Shodan MCP Server – network reconnaissance, DNS operations, and vulnerability intelligence
1 version - Latest release: 2 months ago - 87 downloads last month - 1 maintainer
@cyberhub/trust-hr-components-dev-render 1.0.0
Security Trust Report: @hr-components-dev/render@1.3.4 — 60/100 (C+, standard). Maintainer risk, ...
1 version - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-aigendb 1.0.0
Security Trust Report: aigendb@0.1.2 — 58/100 (C+, standard). Maintainer risk, supply chain analy...
1 version - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-asdzxctestnodejs1 1.0.0
Security Trust Report: asdzxctestnodejs1@1.0.3 — 61/100 (C+, standard). Maintainer risk, supply c...
1 version - Latest release: about 1 month ago - 1 maintainer
vulncheck 1.0.3
AI-powered CLI vulnerability scanner using Gemini
4 versions - Latest release: 26 days ago - 1 maintainer
securecheck 1.0.0
Open-source security testing library for detecting basic web vulnerabilities
1 version - Latest release: 8 months ago - 4 downloads last month - 0 stars on GitHub - 1 maintainer
@cyberhub/trust-hyebook-core 1.0.0
Security Trust Report: @hyebook/core@2.3.5 — 65/100 (B, standard). Maintainer risk, supply chain ...
1 version - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-m4l-icons 1.0.0
Security Trust Report: @m4l/icons@0.0.17 — 64/100 (C+, standard). Maintainer risk, supply chain a...
1 version - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-pubinfo-nightly-core 1.0.0
Security Trust Report: @pubinfo-nightly/core@2025.11.14 — 59/100 (C+, standard). Maintainer risk,...
1 version - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-event-emitter 1.0.0
Security Trust Report: event-emitter@0.3.5 — 67/100 (B, standard). Maintainer risk, supply chain ...
1 version - Latest release: about 1 month ago - 24 downloads last month - 1 maintainer
osv-depguard 1.0.0
Scan npm dependencies for vulnerabilities via OSV.dev + AI summaries
1 version - Latest release: about 1 month ago - 1 maintainer
nullpkg-core 0.0.0
Core detection engine for nullpkg -- catches hallucinated, typosquatted, and vulnerable packages
1 version - Latest release: 2 months ago - 1 maintainer
troj3n 0.0.12
🛡️ Antivirus for Node.js projects - Scan for infected files and malicious/vulnerable packages wit...
5 versions - Latest release: 5 months ago - 50 downloads last month - 1 maintainer
@cyberhub/trust-griddo-ax 1.0.1
Security Trust Report: @griddo/ax@11.12.1-rc.2 — 55/100 (C+, standard). Maintainer risk, supply c...
2 versions - Latest release: about 1 month ago - 68 downloads last month - 1 maintainer
@cyberhub/trust-quantum-ai-free-code 1.0.1
Security Trust Report: @quantum-ai/free-code@2.1.91 — 55/100 (C+, standard). Maintainer risk, sup...
2 versions - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-hailer-mcp 1.0.0
Security Trust Report: @hailer/mcp@1.1.16 — 59/100 (C+, standard). Maintainer risk, supply chain ...
1 version - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-blazfoxx-blazecli 1.0.1
Security Trust Report: @blazfoxx/blazecli@0.1.3 — 58/100 (C+, standard). Maintainer risk, supply ...
2 versions - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-internal-api 1.0.0
Security Trust Report: internal-api@0.0.1-security — 64/100 (C+, standard). 1 vulnerability found...
1 version - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-tages-shared 1.0.0
Security Trust Report: @tages/shared@0.1.0 — 60/100 (C+, standard). Maintainer risk, supply chain...
1 version - Latest release: about 1 month ago - 1 maintainer
@phoenixaihub/vuln-harvest 0.1.0
AI-guided vulnerability discovery framework. Agentic harness: hypothesis → PoC → verify → triage.
1 version - Latest release: 2 days ago - 59 downloads last month - 1 maintainer
@phoenixaihub/mcp-security-scanner 0.1.0
Security scanner for MCP servers — detect vulnerabilities, CVEs, and attack vectors
1 version - Latest release: 2 days ago - 57 downloads last month - 1 maintainer
vulnsig-react 1.3.0
React component for VulnSig CVSS vulnerability glyphs
4 versions - Latest release: 2 months ago - 303 downloads last month - 1 maintainer
bob-mcp-vuln-remediation 0.0.4
MCP server for vulnerability remediation workflows - create branches, apply fixes, open PRs
3 versions - Latest release: about 1 month ago - 1 maintainer
Top 7.1% on npmjs.org
recheck-windows-x64 4.5.0
The Windows 64-bit binary for recheck.
25 versions - Latest release: about 1 year ago - 1 dependent package - 39 dependent repositories - 16.8 thousand downloads last month - 281 stars on GitHub - 1 maintainer
Top 2.2% on npmjs.org
better-npm-audit 3.11.0 💰
Reshape into a better npm audit for the community and encourage more people to include security a...
70 versions - Latest release: over 1 year ago - 73 dependent packages - 81 dependent repositories - 518 thousand downloads last month - 114 stars on GitHub - 1 maintainer
@cyberhub/trust-thinkable-labs-credential-manager 1.0.0
Security Trust Report: @thinkable-labs/credential-manager@1.0.2 — 62/100 (C+, standard). Maintain...
1 version - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-leyton-cms 1.0.0
Security Trust Report: @leyton/cms@10.0.0 — 63/100 (C+, standard). Maintainer risk, supply chain ...
1 version - Latest release: about 1 month ago - 35 downloads last month - 1 maintainer
@cyberhub/trust-agentnetwork-anet 1.0.1
Security Trust Report: @agentnetwork/anet@1.1.5 — 65/100 (B, standard). Maintainer risk, supply c...
2 versions - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-ratio-mcp-shared 1.0.0
Security Trust Report: @ratio-mcp/shared@1.3.6 — 61/100 (C+, standard). Maintainer risk, supply c...
1 version - Latest release: about 1 month ago - 1 maintainer
@emisso/security 0.1.0
AI-powered security scanner for codebases and pull requests — SAST, secrets, dependencies, threat...
1 version - Latest release: about 1 month ago - 21 downloads last month - 0 stars on GitHub - 1 maintainer
@cyberhub/trust-securix-core 1.0.0
Security Trust Report: @securix/core@0.0.30 — 60/100 (C+, standard). Maintainer risk, supply chai...
1 version - Latest release: about 1 month ago - 1 maintainer
nsauditor-ai 0.1.38
Modular AI-assisted network security audit platform — Community Edition
32 versions - Latest release: 1 day ago - 1 maintainer
@cyberhub/trust-babel-core 1.0.0
Security Trust Report for @babel/core — 67/100 (B, standard). Maintainer risk and vulnerability a...
1 version - Latest release: about 1 month ago - 1 maintainer
validate-things 1.0.2
Validate your data in server or client for security
7 versions - Latest release: about 2 years ago - 9 downloads last month - 3 stars on GitHub - 1 maintainer
@cyberhub/trust-mcp-rgek-server 1.0.0
Security Trust Report: mcp-rgek-server@1.0.5 — 60/100 (C+, standard). Maintainer risk, supply cha...
1 version - Latest release: about 1 month ago - 1 maintainer
vuln-reporter 0.1.2
通用型漏洞掃描與報告工具 - 用於解析 Trivy 掃描結果、生成 Excel 報告並發送 Teams 通知的 CLI 工具
3 versions - Latest release: 9 months ago - 16 downloads last month - 1 stars on GitHub - 1 maintainer
pulsesec-cli 0.0.7
PulseSec CLI Agent - AI-Powered DAST Security Testing Tool for APIs
6 versions - Latest release: 4 months ago - 1 maintainer
eslint-plugin-node-security 4.1.0
Security-focused ESLint plugin for Node.js built-in modules (fs, child_process, vm, path, Buffer)...
6 versions - Latest release: 1 day ago - 450 downloads last month - 10 stars on GitHub - 1 maintainer
@cyberhub/trust-aws-sdk 1.0.0
Security Trust Report: aws-sdk@2.1693.0 — 64/100 (C+, standard). 2 vulnerabilities found. Maintai...
1 version - Latest release: about 1 month ago - 1 maintainer
eslint-plugin-secure-coding 3.2.0
Security-focused ESLint plugin with 89 AI-parseable rules for detecting and preventing vulnerabil...
26 versions - Latest release: 1 day ago - 4.16 thousand downloads last month - 10 stars on GitHub - 1 maintainer
@mevichitra/abhay 0.1.0
Abhay: local ML-assisted code security scanner with remediation reports.
1 version - Latest release: 3 days ago - 1 maintainer
test-my-server 1.0.0
A Vulnerability Testing Library for Node.js applications. It provides a set of tools to test you...
1 version - Latest release: over 1 year ago - 8 downloads last month - 1 stars on GitHub - 1 maintainer
@cyberhub/trust-zova-module-a-fetch 1.0.0
Security Trust Report: zova-module-a-fetch@5.1.7 — 64/100 (C+, standard). Maintainer risk, supply...
1 version - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-lru-queue 1.0.0
Security Trust Report: lru-queue@0.1.0 — 64/100 (C+, standard). Maintainer risk, supply chain ana...
1 version - Latest release: about 1 month ago - 1 maintainer
eslint-plugin-vercel-ai-security 1.3.5
Security-focused ESLint plugin for Vercel AI SDK. SDK-aware rules for generateText, streamText, t...
17 versions - Latest release: 3 months ago - 983 downloads last month - 1 maintainer
eslint-plugin-mongodb-security 8.2.3
Security-focused ESLint plugin for MongoDB & Mongoose. Detects NoSQL injection, operator attacks,...
7 versions - Latest release: 3 months ago - 71 downloads last month - 1 maintainer
eslint-plugin-crypto 2.2.3
Security-focused ESLint plugin with 24 AI-parseable rules for cryptographic best practices. Detec...
12 versions - Latest release: 3 months ago - 509 downloads last month - 1 maintainer
depsafe 1.0.0
Know what your dependencies actually do to your code. Usage-level CVE scoping, dead-weight detect...
1 version - Latest release: about 1 month ago - 1 maintainer
js-guard01 1.0.0
A package to find vulnerabilities in JavaScript syntax
1 version - Latest release: almost 2 years ago - 6 downloads last month - 1 maintainer
@cyberhub/trust-fyxzpedia-bail 1.0.0
Security Trust Report: @fyxzpedia/bail@9.0.0 — 65/100 (B, standard). Maintainer risk, supply chai...
1 version - Latest release: about 1 month ago - 1 maintainer
soft-awake 1.0.2
Advanced NPM Package Security Analysis Tool with AI-Powered Intelligence
3 versions - Latest release: 8 months ago - 32 downloads last month - 0 stars on GitHub - 1 maintainer
@cyberhub/trust-nuxt-cli 1.0.0
Security Trust Report for @nuxt/cli — 67/100 (B, standard). Maintainer risk and vulnerability ana...
1 version - Latest release: about 1 month ago - 1 maintainer
rip-rip 0.3.0-alpha.4
Rest In Peace, Vulnerabilities - A terminal-based security auditing tool
4 versions - Latest release: 10 months ago - 9 downloads last month - 3 stars on GitHub - 1 maintainer
Top 8.2% on npmjs.org
agentaudit 3.14.0
Security scanner for AI agent packages — CLI + MCP server
95 versions - Latest release: 2 months ago - 8.07 thousand downloads last month - 0 stars on GitHub - 1 maintainer
shieldagent 0.1.0
AI Agent Security Scanner - Scan MCP servers for vulnerabilities
1 version - Latest release: 2 months ago - 1 maintainer
vulnsink 0.1.0
SAST + LLM Security Scanner that filters false positives and auto-fixes issues
1 version - Latest release: 4 months ago - 92 downloads last month - 1 maintainer
contrastapi 1.4.2 💰
Official Node.js SDK for ContrastAPI — security intelligence for developers and AI agents
6 versions - Latest release: 4 days ago - 709 downloads last month - 20 stars on GitHub - 1 maintainer
@claytivi/driftguard-mcp 1.0.2
MCP server for context-aware dependency vulnerability scanning. Finds which npm audit warnings ac...
3 versions - Latest release: about 1 month ago - 93 downloads last month - 1 maintainer
n8n-nodes-vulnmatter-cli 2.0.5
n8n community node for CIRCL Vulnerability-Lookup API (https://vulnerability.circl.lu/api). API s...
5 versions - Latest release: 8 months ago - 52 downloads last month - 1 maintainer
@cyberhub/trust-nuxt-kit 1.0.0
Security Trust Report for @nuxt/kit — 66/100 (B, standard). Maintainer risk and vulnerability ana...
1 version - Latest release: about 1 month ago - 1 maintainer
@jonsoku2/mcp-security-scanner 1.1.2
MCP 도구들의 보안 취약점을 검사하는 도구
9 versions - Latest release: about 1 year ago - 19 downloads last month - 1 maintainer
@cyberhub/trust-heyhru-server-util-jwt 1.0.0
Security Trust Report: @heyhru/server-util-jwt@0.1.2 — 61/100 (C+, standard). Maintainer risk, su...
1 version - Latest release: about 1 month ago - 1 maintainer
decoy-scan 0.6.1
Security scanner for MCP server configurations. Finds risky tools, vulnerable packages, and suspi...
22 versions - Latest release: 2 days ago - 1.29 thousand downloads last month - 0 stars on GitHub - 1 maintainer
herozion 1.1.7
Security audit and performance analysis CLI tool for developers
28 versions - Latest release: 2 days ago - 3.15 thousand downloads last month - 1 maintainer
@cyberhub/trust-seroval 1.0.0
Security Trust Report: seroval@1.5.1 — 68/100 (B, standard). 5 vulnerabilities found. Maintainer ...
1 version - Latest release: about 1 month ago - 1 maintainer
shieldnet-mcp 1.0.1
ShieldNet Security Scanner — MCP Server for AI Agent Security Governance. Scans URLs for XSS, SQL...
2 versions - Latest release: about 1 month ago - 1 maintainer
depshield-mcp 1.0.0
MCP server for real-time dependency security — checks packages against CVE databases before your ...
2 versions - Latest release: about 1 month ago - 1 maintainer
lockguard 1.0.1
npm supply-chain security scanner — detect malicious postinstall hooks, CVE vulnerabilities, and ...
2 versions - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-loadash 1.0.2
Security Trust Report: loadash@1.0.0 — 60/100 (C+, standard). Maintainer risk, supply chain analy...
3 versions - Latest release: 2 days ago - 200 downloads last month - 1 maintainer
arc-security-mcp 0.5.1
AI agent security: scan skills for 25 attack classes + runtime monitoring (EDR for AI agents). Re...
5 versions - Latest release: 3 months ago - 63 downloads last month - 1 maintainer
@mcp-shark/mcp-shark 1.7.2
Security scanner for AI agent tools. Local static scan of MCP IDE configs (41 rules, toxic flow h...
18 versions - Latest release: 16 days ago - 238 downloads last month - 1 maintainer
@cyberhub/trust-activepieces-shared 1.0.1
Security Trust Report: @activepieces/shared@0.54.4 — 59/100 (C+, standard). Maintainer risk, supp...
2 versions - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-agentskit-rag 1.0.0
Security Trust Report: @agentskit/rag@0.1.1 — 60/100 (C+, standard). Maintainer risk, supply chai...
1 version - Latest release: about 1 month ago - 1 maintainer
am-i-doomed 1.0.2
A dramatic security scanner that checks your Node.js project for known vulnerabilities using OSV ...
3 versions - Latest release: 8 months ago - 11 downloads last month - 1 maintainer
gemini-bug-hunter 1.2.0
AI-Powered Security Vulnerability Hunter using Gemini 2.5 Flash
4 versions - Latest release: 4 months ago - 1 maintainer
Top 7.7% on npmjs.org
juice-shop-ctf-cli 12.0.0 💰
Capture-the-Flag (CTF) environment setup tools for OWASP Juice Shop
48 versions - Latest release: 8 months ago - 1 dependent package - 1 dependent repositories - 756 downloads last month - 378 stars on GitHub - 1 maintainer
allsecurex-quantum-scanner 1.1.2
AllSecureX Quantum Scanner - AI-Driven Post-Quantum Cryptography Assessment Tool
13 versions - Latest release: about 1 month ago - 136 downloads last month - 1 maintainer
@cyberhub/trust-xpress 1.0.0
Security Trust Report: xpress@2.4.6 — 60/100 (C+, standard). Maintainer risk, supply chain analys...
1 version - Latest release: about 1 month ago - 32 downloads last month - 1 maintainer
npm-audit-visualizer 1.0.0-alpha.7
a web-based tool to visualize audit reports generated by npm audit
8 versions - Latest release: almost 2 years ago - 15 downloads last month - 2 stars on GitHub - 1 maintainer
@cyberhub/trust-stream-combiner 1.0.1
Security Trust Report: stream-combiner@0.2.2 — 73/100 (B, standard). Maintainer risk, supply chai...
2 versions - Latest release: about 1 month ago - 43 downloads last month - 1 maintainer
nullpkg 0.0.0
Dependency firewall that catches hallucinated, typosquatted, and vulnerable packages before they ...
1 version - Latest release: 2 months ago - 1 maintainer
@cyberhub/trust-minimatch 1.0.4
Security Trust Report: minimatch@10.2.5 — 62/100 (C+, standard). 5 vulnerabilities found. Maintai...
5 versions - Latest release: about 1 month ago - 1 maintainer
@cveriskpilot/scan 0.1.17 💰
Compliance as a Service CLI — scan dependencies, secrets, and IaC, then auto-map every finding to...
14 versions - Latest release: about 1 month ago - 1.81 thousand downloads last month - 0 stars on GitHub - 1 maintainer
@iflow-mcp/robertodure-mcp-vulnerability-scanner 1.0.0
An MCP server for scanning vulnerabilities on IP addresses
1 version - Latest release: 3 months ago - 2 maintainers
bugnitor-security-scanner 3.1.2
AI-Era Security Scanner: Intelligent automated security review agent specializing in AI-generated...
8 versions - Latest release: 10 months ago - 17 downloads last month - 2 stars on GitHub - 1 maintainer
@datanexusmcp/mcp-server 2.0.1
DataNexus MCP — AI-Ready access to public data via 29 tools: US/UK nonprofits, OSS vulnerability ...
7 versions - Latest release: 3 days ago - 1 maintainer
@cyberhub/trust-google-internal 1.0.0
Security Trust Report: google-internal@0.0.1-security — 64/100 (C+, standard). Maintainer risk, s...
1 version - Latest release: about 1 month ago - 1 maintainer
@vexlit/core 0.1.1
VEXLIT core analysis engine — AI-powered code security vulnerability scanner
2 versions - Latest release: about 2 months ago - 0 stars on GitHub - 1 maintainer
@cyberhub/trust-through 1.0.0
Security Trust Report: through@2.3.8 — 72/100 (B, standard). Maintainer risk, supply chain analys...
1 version - Latest release: about 1 month ago - 1 maintainer
@cyberhub/trust-nc-local-im-connector 1.0.0
Security Trust Report: nc-local-im-connector@3.0.0 — 61/100 (C+, standard). Maintainer risk, supp...
1 version - Latest release: about 1 month ago - 1 maintainer
@sigildev/sigil 0.2.2
Security scanner for MCP (Model Context Protocol) servers — static analysis, trust scoring, and v...
7 versions - Latest release: 2 months ago - 141 downloads last month - 1 maintainer