NPMScan Alternatives

NPMScan is described as 'Security analysis tool for the JavaScript ecosystem. It scans npm packages for malicious behavior and supply chain risks that are often invisible to developers. The scanner inspects scripts, dependencies, encoded payloads, metadata, and common attack patterns used' and is an website in the security & privacy category. There are more than 25 alternatives to NPMScan, not only websites but also apps for a variety of platforms, including SaaS, Mac, Windows and Self-Hosted apps. The best NPMScan alternative is GitHub, which is free. Other great sites and apps similar to NPMScan are Artemis Security Scanner, Mend Renovate, Libraries.io and Aikido Security.

Copy a direct link to this comment to your clipboard
NPMScan alternatives page was last updated

Alternatives list

  1. Unified application security platform — 12 scanners including SAST, DAST, SCA, and pen-testing in one on-premise deployment. Replaces your entire AppSec stack.

    85 Proscan AppSec alternatives

    Cost / License

    • Freemium
    • Proprietary

    Application type

    Platforms

    • Windows
     
  2. SecDash icon
     Like

    SecDash automatically detects security vulnerabilities in applications created with ChatGPT, Claude, and other AI tools, providing clear and actionable guidance.

    19 SecDash alternatives

    Cost / License

    • Freemium
    • Proprietary

    Application type

    Platforms

    • Online
     
  3. Vigiles icon
     1 like

    Timesys Vigiles is a Software Composition Analysis (SCA) tool that helps generate and analyze a Software Bill of Materials (SBOM) for publicly known cybersecurity vulnerabilities, particularly CVEs. Vigiles is optimized for embedded systems, and it provides a complete...

    10 Vigiles alternatives

    Cost / License

    • Freemium
    • Proprietary

    Platforms

    • Online
    • Software as a Service (SaaS)
     
  4. GuardRails continuously scans your GitHub & GitLab repositories to alert you of any vulnerabilities and security issues. Get started in minutes.

    Cost / License

    • Paid
    • Proprietary

    Application type

    Platforms

    • Online
    • Self-Hosted
    • Software as a Service (SaaS)
     
  5. Violinist.io icon
     1 like

    Automatically update your composer (php) dependencies.

    Cost / License

    • Freemium
    • Open Source

    Application type

    Platforms

    • Online
    • PHP
     
  6. vet icon
     Like

    vet is a tool for protecting against open source software supply chain attacks. To adapt to organizational needs, it uses an opinionated policy expressed as Common Expressions Language and extensive package security metadata including:

    Cost / License

    Platforms

    • Mac
    • Linux
    • Homebrew
     
You are at page 3 of NPMScan alternatives