Add Auth, Databases, Functions, and Storage to your product and build any application at any scale while using your preferred coding languages and tools. Learn more →
Lockfile-lint Alternatives
Similar projects and alternatives to lockfile-lint
-
-
-
Appwrite
Appwrite - The open-source backend cloud platform. Add Auth, Databases, Functions, and Storage to your product and build any application at any scale while using your preferred coding languages and tools.
-
-
-
-
awesome-nodejs-security
Awesome Node.js Security resources
-
-
Onboard AI
Learn any GitHub repo in 59 seconds. Onboard AI learns any GitHub repo in minutes and lets you chat with it to locate functionality, understand different parts, and generate new code. Use it for free at www.getonboard.dev.
-
-
unimported
Find and fix dangling files and unused dependencies in your JavaScript projects.
-
cfn-lint-action
GitHub Action for interacting with CloudFormation Linter
-
webpack
A bundler for javascript and friends. Packs many modules into a few bundled assets. Code Splitting allows for loading parts of the application on demand. Through "loaders", modules can be CommonJs, AMD, ES6 modules, CSS, Images, JSON, Coffeescript, LESS, ... and your custom stuff.
-
-
-
-
stylelint
A mighty CSS linter that helps you avoid errors and enforce conventions.
-
npq
🎖safely* install packages with npm or yarn by auditing them as part of your install process
-
-
betterer
betterer makes it easier to make incremental improvements to your codebase
-
js-x-ray
JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬.
-
sdc-check
Small tool to inform you about potential risks in project dependencies list
-
InfluxDB
Collect and Analyze Billions of Data Points in Real Time. Manage all types of time series data in a single, purpose-built database. Run at any scale in any environment in the cloud, on-premises, or at the edge.
lockfile-lint reviews and mentions
-
How to Effortlessly Improve a Legacy Codebase Using Robots
Run static analysis e.g. lint with lockfile-lint, Stylelint, ESLint, check for unimported files using unimported, and identify potential security vulnerabilities
-
The rising trend of malicious packages in open source ecosystems | Snyk
I built a lockfile-lint (https://github.com/lirantal/lockfile-lint) that helps with ensuring that some of these trust policies are enforced.
-
How to respond to growing supply chain security risks?
And it is happening right now. Github is opening the GitHub Advisory Database to community submissions. Awesome community NodeSecure builds cool things like scanner and js-x-ray. There are also lockfile-lint, LavaMoat, Jfrog-npm-tools (and I am sure there is more).
-
Injecting backdoors to NPM packages
An additional approach may be to use lockfile-lint, but you shouldn't just rely on this script entirely because there are other ecosystems than npm, and they may have similar issues.
-
JavaScript Security 101
Use lockfile lint to check changes in the package-lock.json which is typically not reviewed
-
A note from our sponsor - Appwrite
appwrite.io | 4 Dec 2023
Stats
lirantal/lockfile-lint is an open source project licensed under Apache License 2.0 which is an OSI approved license.
The primary programming language of lockfile-lint is JavaScript.