Snyk - node.js 第三方库安全监测工具

2,598 阅读1分钟
原文链接: snyk.io

Find & Fix Known Vulnerabilities in Node.js Dependencies

  • Test your code to find known vulnerabilities in your dependencies
  • Protect yourself through upgrades and patches
  • Monitor your code for newly disclosed vulnerabilities

11% of the top 25,000 npm packages carry known vulnerabilities

Third party packages make great capabilities available quickly and freely, but can also bring along major security holes. Do you know if one of your dependencies have you exposed?

Check these popular public packages for vulnerabilities:

Install Snyk to find known vulnerabilities in your Node.js dependencies.

Great teams are using Snyk

“I think it's a great tool and there's really no need to release code with vulnerabilities when scanning them is as easy as dropping 'snyk test' into a test script.”

— Dallas Read, lynda.com

“This is a no brainer. It's practically irresponsible ​​not​​ to use Snyk?”

— Ben Galbraith, previously Walmart Labs, Ajaxian founder, etc.

“This fixes a very real problem”

— Tom Maslen, BBC

“Yeah, we’ll be using this"

— Jan Lehnardt, Hoodie

Sign-up Today

When you sign up we authorize you using GitHub. We don't need access to your repositories. Use the Snyk portal to store snapshots of your projects to monitor for newly disclosed vulnerabilities.