logoalt Hacker News

jslakroyesterday at 3:35 PM1 replyview on HN

Any open source tool to scan a github repo before download/install it locally? I'm thinking of semgrep or socket.dev but I wonder if there's a better option


Replies

downrightmiketoday at 1:39 AM

Virus total should be scanning GIthub at the least, because it is a job MS Defender can't appear to itself.