js-x-ray VS security-wg

Compare js-x-ray vs security-wg and see what are their differences.

js-x-ray

JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬. (by fraxken)

security-wg

Node.js Ecosystem Security Working Group (by nodejs)
Our great sponsors
  • SurveyJS - Open-Source JSON Form Builder to Create Dynamic Forms Right in Your App
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • WorkOS - The modern identity platform for B2B SaaS
js-x-ray security-wg
8 6
196 481
2.0% 1.5%
8.7 8.9
7 days ago 6 days ago
JavaScript JavaScript
MIT License MIT License
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

js-x-ray

Posts with mentions or reviews of js-x-ray. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-01-16.

security-wg

Posts with mentions or reviews of security-wg. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-02-19.

What are some alternatives?

When comparing js-x-ray and security-wg you can also consider the following projects:

cli - JavaScript security CLI that allow you to deeply analyze the dependency tree of a given package or local Node.js project.

cargo-vet - supply-chain security for Rust

ci - NodeSecure tool enabling secured continuous integration

scorecard - OpenSSF Scorecard - Security health metrics for Open Source

report - NodeSecure HTML & PDF report generator for any public and/or private git repositories.

W4SP-Stealer - w4sp Stealer official source code, one of the best python stealer on the web [GET https://api.github.com/repos/loTus04/W4SP-Stealer: 403 - Repository access blocked]

vulnera - Programmatically fetch security vulnerabilities with one or many strategies (NPM Audit, Sonatype, Snyk, Node.js DB).

secimport - eBPF Python runtime sandbox with seccomp (Blocks RCE).

Governance - NodeSecure Governance (Code of conduct & Contribution guidelines)

types - Typescript definitions for npm registry content

scanner - ⚡️ A package API to run a static analysis of your module's dependencies. This is the CLI engine!