> cat /dev/github | grep security-tools
discovered 03 Aug 2026

npm-scan

JavaScript ★ 18 via github-topic
→ View on GitHub
npm-scan is an advanced supply chain threat detection tool designed to identify sophisticated attacks that typical tools like npm audit, Snyk, and Socket often overlook. It excels at detecting obfuscated payloads, credential theft, eBPF kernel rootkits, and various AI-targeted attacks, boasting over 95% confidence in real-world threat scenarios. Key features include comprehensive behavioral pattern recognition and a dual detection approach that enhances compliance and reduces financial liability associated with data breaches.