Read-only developer endpoint scanner for on-disk package, extension, and developer-tool metadata, built to check exposure to known software supply-chain compromises.
-
Updated
May 23, 2026 - Go
Read-only developer endpoint scanner for on-disk package, extension, and developer-tool metadata, built to check exposure to known software supply-chain compromises.
No-nonsense security (NoNonSec). Ignored today, exploited tomorrow.
Add a description, image, and links to the package-inventory topic page so that developers can more easily learn about it.
To associate your repository with the package-inventory topic, visit your repo's landing page and select "manage topics."