WorthToTry
Security

Socket

Detect malicious packages in your supply chain

About Socket

Security · Freemium · 17 upvotes · Launched week 26, 2026

Socket inspects the actual behaviour of npm, PyPI, Go and other dependencies — install scripts, network access, filesystem use — to catch supply chain attacks that CVE databases miss because the package is new. It reviews dependency changes directly in pull requests. Free for open source; paid plans per developer.

Socket alternatives

Other Security tools listed here, ordered by how much they overlap with Socket and then by upvotes. Not a ranking against Socket — open one and judge for yourself.

0 comments

2000 characters left · you will be asked to sign in

No comments yet. Be the first to say something.

Upvoted by

17
+5Show everyone who upvoted this