THREATPKG
SYNC STALE

Check manifests against indexed compromise incidents

Dependency scan

Upload or paste lock files and manifests. ThreatPkg matches package names and versions against malware and supply-chain incidents (local index plus live OSV malware checks)—not every CVE. Prefer package-lock.json, yarn.lock, bun.lock, pnpm-lock.yaml, or poetry.lock for exact versions.

package-lock.json, yarn.lock, bun.lock, pnpm-lock.yaml, package.json, poetry.lock, or requirements.txt (max 5 files, 10 MB total)