NightLore / DependencyVis

2 stars 1 forks source link

Investigate Snyk.io #23

Open NightLore opened 4 years ago

NightLore commented 4 years ago

See how reliable and accessible this vulnerability database is https://snyk.io/ https://github.com/snyk/snyk

bcdasilv commented 4 years ago

Pretty interesting tool/service. They provide remediation for vulnerabilities, besides detecting them. Also, they claim to have a leading vulnerability database.

There's a free plan https://snyk.io/plans/

The API is available for paid users only https://snyk.docs.apiary.io/#reference/test/npm which includes an experimental dependency graph https://snyk.docs.apiary.io/#reference/monitor/depgraph

NightLore commented 3 years ago

Example of snyk.io security advisory document: https://snyk.io/vuln/npm:qs:20170213