Scanner to check if you are affected by the axios supply chain attack
Forensic triage CLI with verdict system for axios IOC detection.

NPM supply chain scanner competing against Socket, Snyk, and npm audit.
JavaScript developers and security teams auditing dependencies
Socket · Snyk · npm audit
Forensic triage CLI with verdict system for axios IOC detection.
Behavioral malware scanning before install, unlike pip-audit.
Yet another package proxy when Sonatype, Verdaccio, and Cloudsmith already own this space.
Catches .pth injection vectors from the litellm attack when Snyk and Dependabot miss them.
Speculative protocol for package quarantine without a reference implementation or registry buy-in.
One command hardens five package managers when hand-editing configs gets ignored.