Automation code quality, performance and security

A security sandbox tool that controls network and file access

Private Package Hosting + Vetted Packatges / Security Auditing

The Vibe-Coding Security Guide: For Devs Who Ship First and Secure Later

Shai-Hulud malware attack: Tinycolor and over 40 NPM packages compromised

Color NPM Package Compromised

crates.io: Malicious crates faster_log and async_println

Crypto Miner in hotio/qbittorrent

One Token to rule them all – Obtaining Global Admin in every Entra ID tenant

Our plan for a more secure npm supply chain