js-x-ray VS sdc-check

Compare js-x-ray vs sdc-check and see what are their differences.

js-x-ray

JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬. (by fraxken)

sdc-check

Small tool to inform you about potential risks in project dependencies list (by mbalabash)
Our great sponsors
  • SurveyJS - Open-Source JSON Form Builder to Create Dynamic Forms Right in Your App
  • WorkOS - The modern identity platform for B2B SaaS
  • InfluxDB - Power Real-Time Data Analytics at Scale
js-x-ray sdc-check
8 2
196 138
2.0% -
8.7 3.8
7 days ago 5 months ago
JavaScript TypeScript
MIT License MIT License
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

js-x-ray

Posts with mentions or reviews of js-x-ray. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-01-16.

sdc-check

Posts with mentions or reviews of sdc-check. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2022-04-03.

What are some alternatives?

When comparing js-x-ray and sdc-check you can also consider the following projects:

cli - JavaScript security CLI that allow you to deeply analyze the dependency tree of a given package or local Node.js project.

LavaMoat - tools for sandboxing your dependency graph

ci - NodeSecure tool enabling secured continuous integration

lockfile-lint - Lint an npm or yarn lockfile to analyze and detect security issues

report - NodeSecure HTML & PDF report generator for any public and/or private git repositories.

audit-ci - Audit NPM, Yarn, and PNPM dependencies in continuous integration environments, preventing integration if vulnerabilities are found at or above a configurable threshold while ignoring allowlisted advisories

vulnera - Programmatically fetch security vulnerabilities with one or many strategies (NPM Audit, Sonatype, Snyk, Node.js DB).

Governance - NodeSecure Governance (Code of conduct & Contribution guidelines)

types - Typescript definitions for npm registry content

rc - NodeSecure runtime configuration

cli - GitHub’s official command line tool