Analyzing dependencies...
Vulnerability Report
| Package | Version | Status | Advisories |
|---|
One upload tells you if your dependencies are putting your app at risk.
Free instant scan, no signup required.
Files are processed locally. Nothing is uploaded.
Stay informed about the latest security incidents and compromised packages
Your lockfiles never leave your browser. All processing happens locally on your device.
Get results in seconds. No server uploads, no waiting in queues.
Daily updates from OSV database and curated incident feeds for the latest threats.
Drag and drop your package-lock.json, pnpm-lock.yaml, or yarn.lock file into the browser.
Dependencies are parsed locally in your browser and matched against our vulnerability database.
Get immediate feedback on vulnerable packages with links to security advisories and remediation steps.
Our system processes your lockfiles entirely within your browser using advanced client-side parsing and vulnerability matching algorithms.
Ready to check your dependencies? Go back to the scanner above.