VulnerabilityEnhanced with input2 checks
Dependency Vulnerability Scanner
Scan your project dependencies for known vulnerabilities and outdated packages.
How this scan works
- Passive: fingerprints client-shipped library versions and checks OSV.dev
- Enhanced: accepts a package.json/lockfile or a connected GitHub repo to batch-query OSV.dev against the full dependency tree, including dev/transitive dependencies where the lockfile provides it
