
Arnica
Behavior based software supply chain security
What it does
Software supply chain attacks have caught the security community off-guard. Arnica, starting with GitHub & Azure DevOps, addresses the two primary root causes: 1) 🪄 excessive permissions to developer tools 2) 🥸 lack of abnormal behavior detection
Does the same job
all alternatives →

- VNVet now supports detecting malicious packages2023 · github.com · ▲6
If you are worried about the recent Lazarus group software supply chain attack, you should consider having guard rails that is more than conventional SCA. `vet` detects the package (version) published in the report as malware. Try out vet, its free and open source: https://github.com/safedep/vet More details on the attack: https://www.nodejs-security.com/blog/north-korea-malware-on-...
- PQPqurp – Quarantine Window for Packages to Prevent Supply Chain AttacksMay 2026 · github.com · ▲5

- DADiffmatic – A daily GitHub digest for dev teams2014 · diffmatic.com · ▲67
More dev tools this month
the category →



Open-source GTM skills for technical founders
Dev tools · 29d ago · gtmcofounder.com

OpenTrailPaper is open-source bike computer firmware for the LilyGO T5S3 4.7" E-Paper PRO. It supports offline maps, GPX routes, FIT recording and Bluetooth sensors.
Dev tools · 1d ago · opentrailpaper.com

Launched alongside, May 2022
the whole month →
Peerlist▲1,052A professional network w/ robust work profiles at its core
Life & fun · 2022 · peerlist.io



- MA
Life & fun · 2022 · github.com
