npq Logo

npq

A tool that safely installs packages with npm/yarn by auditing them as part of your install process.

Free1,555
Visit Website
Compare
0
MCPThe entire cybersecurity market, one prompt awayTry MCP Access

npq Description

npq is a tool that safely installs packages with npm/yarn by auditing them as part of your install process. It performs sanity checks to ensure the package is safe to install, including: * Consulting the Snyk.io database of publicly disclosed vulnerabilities * Checking package age on npm * Verifying package download count as a popularity metric * Ensuring the package has a README file * Verifying the package has a LICENSE file * Checking for pre/post install scripts Once installed, npq can be used to safely install packages, such as `npq install express`.

npq FAQ

Common questions about npq including features, pricing, alternatives, and user reviews.

npq is A tool that safely installs packages with npm/yarn by auditing them as part of your install process.. It is a Application Security solution designed to help security teams with NPM, Supply Chain Security.

Have more questions? Browse our categories or search for specific tools.

ALTERNATIVES

Aikido Software Supply Chain Security Logo

Software supply chain security platform detecting malware in dependencies

0
Chainguard Libraries Logo

Malware-resistant software libraries rebuilt from source for multiple languages

0
Socket Logo

Detects and blocks malicious/vulnerable open source packages in supply chains.

0
pkgsign Logo

A CLI tool for signing and verifying npm and yarn packages.

0
Lockfile Linting Logo

Lint lockfiles for improved security and trust policies.

0

Stay Updated with Mandos Brief

Get strategic cybersecurity insights in your inbox