1 comment

[ 5.5 ms ] story [ 18.4 ms ] thread
Hey Folks,

We built this opensource tool to detect opensource supply chain attacks on npm and pypi.

Feel free to give it a try and contribute to improvements.