Autonomous “Shai-Hulud” engine that ingests malicious NPM package advisories from OSV, tracks versions and metadata, and maintains a continuously updated threat intelligence database.
-
Updated
Oct 2, 2026 - JavaScript
Autonomous “Shai-Hulud” engine that ingests malicious NPM package advisories from OSV, tracks versions and metadata, and maintains a continuously updated threat intelligence database.
Predict safer travel routes by analyzing crime data with machine learning to inform women of risk levels in real time.
Stop GitHub comments, issues, and PR text from becoming instructions for AI coding agents.
Deterministic evidence for authorized security-patch work and platform migrations.
Preventing sensitive data from being pushed to a repository | Removing traces of the sensitive data | GitHub vulnerability alerts| Fixing vulnerable dependencies | Security policy | .gitignore | Tracing sensitive data
GitHub Action for reviewing dependency changes and policy findings in pull requests with Bomly CLI.
To associate your repository with the open-source-security topic, visit your repo's landing page and select "manage topics."