nisconder/npm-safe

Local-first npm supply-chain security scanner: static + optional LLM analysis, CLI/CI gates, desktop app, and AI-agent skills.

5Stars on the repository
1Mods indexed here, across every type
5d agoLast push, which is what freshness is scored on
Apache-2.0Licence, which decides whether bodies are shown

npm-safe-scan

01

nisconder/npm-safe

Skill Claude CodeCodex

Automatically scan any npm package for supply-chain security risks BEFORE the user installs it. Trigger this skill whenever the user asks to install, add, or upgrade an npm package or dependency (e.g. "npm install X", "install X", "add X as a dependency", "yarn add X", "pnpm add X", "upgrade X"), or wants to…

not rated 5 5d ago A 128 tokens original Apache-2.0