logoalt Hacker News

retlehsyesterday at 7:08 PM1 replyview on HN

This won’t protect against everything, but it still seems like a good idea to implement:

https://github.com/danielroe/provenance-action


Replies

indigodaddyyesterday at 7:23 PM

Yep I did see that, but I'm not planning on pushing anything, just want a tool to scan for any of the offending packages. Could make my own but feel like somebody must have already made something (and probably better than I can)

show 1 reply