Dependency Analysis

Feeds to Scour
SubscribedAll
Scoured 159 posts in 13.1 ms

shcherbak-ai/licenseal: Fast cross-ecosystem dependency license compatibility checker + Claude Code review skill

 🧠Obsidian  Content type: Code
github.com··Hacker News

npm Tooling Bug Incorrectly Marks One-Character Packages as Security Holders

 🌉Language Bridges  Content type: Blog
socket.dev·

GitHub pulls pin on npm's auto-run scripts

 🌳Tree Shaking  Content type: News

Upcoming breaking changes for npm v12 - GitHub Changelog

 🌳Tree Shaking  Content type: Blog  Content type: Tutorial

Firefox adds Google Play Integrity checks for it's AI features

 🌐Browser Compilers

New IronWorm malware hits 36 packages in npm supply-chain attack

 🚂Cranelift IR

Nuts – pip/NPM for Java with first-class workspaces and JDK provisioning (9y+)

 🎯Escape Analysis  Content type: Code
github.com··Hacker News

someone actually leaked the Miasma supply chain attack toolkit source code on github

 🔓Binary Exploitation

Compromised Rust crate onering performs code exfiltration

 🛡️Cybersecurity  Content type: Blog
aikido.dev··r/rust

VS Code Adds 2-Hour Extension Auto-Update Delay to Limit Supply Chain Attacks

 🔗Language Toolchains

A package manager for AI assets (and why the lock file is per-user)

 🧩Cognitive Science  Content type: Blog

codacy/codacy-cloud-cli: A command-line tool to interact with Codacy Cloud directly from your terminal.

 💻Terminal Tools  Content type: Code
github.com··Hacker News

You can fork a package, but can you own it?

 🛡️Penetration Testing  Content type: News

Miasma NPM Supply Chain Attack: Self-Spreading Worm via Phantom Gyp

 🔓Binary Exploitation  Content type: Blog

OWASP Dependency-Track 5.0 Is Now Generally Available

 🔍Search Algorithms  Content type: Blog
owasp.org··Hacker News

I Am Open Sourcing Hissab Calculator App, Skills, CLI and NPM

 📐Mathematical Computing  Content type: Code
github.com··Hacker News

Build settings in binary crates via cargo install and crates.io

 🧠Memory Management

Sparknotes for your agents. Try for free

 🌳Tree Shaking

I wish Deno would keep doing what it does best

 🔍Type Inference

NPM-Scan v1.1.0: Four New Detectors for June 2026 Supply Chain Attacks

 🌳Tree Shaking  Content type: Code
github.com··Hacker News

Keyboard Shortcuts

Navigation

Next / previous item
j/k
Open post
oorEnter
Preview post
v

Post Actions

Love post
a
Like post
l
Dislike post
d
Undo reaction
u
Save / unsave
s

Recommendations

Add interest / feed
Enter
Not interested
x

Go to

Home
gh
Interests
gi
Feeds
gf
Likes
gl
History
gy
Changelog
gc
Settings
gs
Browse
gb
Search
/

General

Show this help
?
Submit feedback
!
Close modal / unfocus
Esc

Press ? anytime to show this help