Dev tools · alternatives · 2026

24 alternatives to Healthy Package by DerScanner
Find Healthy Open-Source Packages to Protect Your App
Below are 24 products that do a similar job, ranked by how close each is in meaning and then by launch-day votes. Healthy Package by DerScanner launched in 2024; newer entries below may have overtaken it.
- 1

- 2

- 3PA
2019 · packagr.app · its alternatives →
- 4

Monitor NuGet and NPM packages in your repositories
2021 · its alternatives →
- 5

- 6

- 7EF
- 8

- 9

- 10

- 11

- 12

Find open source projects by the percentage of a language.
2022 · its alternatives →
- 13SN
This past quarter has been awash with sophisticated npm supply chain attacks like [Shai-Hulud](https://www.cisa.gov/news-events/alerts/2025/09/23/widesprea...() and the [Chalk/debug Compromise](https://www.wiz.io/blog/widespread-npm-supply-chain-attack-b...). This CLI helps protect users from recently compromised packages by only downloading packages that have been public for a while (default is 90 days or older). Install: npm install -g @dendronhq/safe-npm Usage: safe-npm install react@^18 lodash How it works: - Queries…
Nov 2025 · github.com · its alternatives →
- 14
EOL Dataset▲64Find every EOL dependency in your stack. Free. In 5 minutes.
Apr 2026 · herodevs.com · its alternatives →
- 15

- 16

- 17

- 18

Check if your npm/pypi/cargo/composer packages are maintaind
Jun 2026 · gavinbarbatruder.github.io · its alternatives →
- 19

- 20OR
2019 · open-registry.dev · its alternatives →
- 21TD
Trusty - Search for an open source package to understand its trustworthiness based on activity, provenance, and more. Brought to you by the founders of projects such as Kubernetes and Sigstore. Hey, Luke here the CTO of stacklok. This is an early experimental preview of Trusty. We use statistical analysis to observe millions of packages and found that Malware typically follows certain patterns. We found this tool really useful to help understand the packages we our pulling into our software and wanted to share it with others. It's still early in and we have a lot more features that will be…
2023 · trustypkg.dev · its alternatives →
- 22IB
Linux Foundation survey says 70-90% of modern software constitute OSS code. Yet we are stuck with tools that scan only for vulnerabilities in 3rd party libraries and that too with high degree of false positives. I built `vet` for policy and data driven analysis of 3rd party packages that goes beyond only vulnerability and allows codifying organisational policies related to OSS consumption. https://github.com/safedep/vet Looking forward to feedback and suggestions from HN :)
2023 · github.com · its alternatives →
- 23SD
As software engineers we are often confronted with the decision of whether to code something ourselves or to add an existing library that does it for us. Whether we like it or not – we are adding dependencies sooner or later. And it's arguably good practice to check a new dependency beforehand: Is it maintained? By whom? How many issues does it have and how many of those are bugs? Are they being fixed? What's on the roadmap? What's the release frequency and how often do APIs break? One of our favorite solutions that already exist to answer such questions is the OpenSSF Scorecard project…
2025 · shouldiuse.dev · its alternatives →
- 24

Also compare
Ranked by how close each launch is in meaning, then by votes. Prices were read from each product’s own site when checked and can change. Refine with your own description →