Tool to check for dependency confusion vulnerabilities in multiple package management systems
-
Updated
Aug 19, 2024 - Go
pip is a de facto standard package-management system used to install and manage software packages written in Python. Many packages can be found in the default source for packages and their dependencies — Python Package Index (PyPI).
Tool to check for dependency confusion vulnerabilities in multiple package management systems
🚀 Code Analysis & Policy as Code for Open Source Software Supply Chain
Continuous Delivery for automating package releases (npm, cookbooks, gems, pip, jars, etc)
CLI client (and Golang module) for deps.dev API. Free access to dependencies, licenses, advisories, and other critical health and security signals for open source package versions.
Saves you from Python supply chain attack!
Serve files from a GCP bucket
Implementation of a PyPi server in Golang.
Scalable All in One Registry server that handles Packages for NPM, PyPi, Docker/Containers
a universal package manager
A tool to manage components in private repo
Created by Ian Bicking, Jannis Leidel
Released April 4, 2011