top | item 45771570

(no title)

heelix | 4 months ago

Is there a way to detect/filter dependencies that use HTTP URLs as dependency specifiers as part of an NPM install? Since you can send specific requesters different payloads, I can see how this would bypass most of the normal scanning tools.

discuss

order

No comments yet.