NPM Package Scanner
Audit JavaScript and TypeScript repository dependencies for security, supply-chain, maintenance, version, lockfile, and cleanup risks. Use for npm, pnpm, Yarn, or Bun package reviews; do not use for automatic dependency upgrades unless the user explicitly requests changes.
as observed 2026-09-18T20:20:38.833Z- Identifier
npm-package-scan- Source
- ClawHub
- Version observed
- 1.2.0
- Source repository
- not published
- Repository observation
- No source repository listed
- First observed here
- 2026-09-16T18:18:14.270Z
- Observations recorded
- 3
- Installs (reported upstream)
- 19
- Weekly downloads (upstream)
- 862
- Declared license
- MIT-0
Observation history
2026-09-18T20:20:38.833Z
Fields that differed: changelog latestVersion
| Field | Before | After |
|---|---|---|
changelog |
"Expanded dependency audits with offline-first evidence checks, safer command boundaries, broader npm/pnpm/Yarn/Bun and workspace coverage, and a structured risk report template." | "Add optional Markdown and JSON report export with stable structured results and network-check context." |
latestVersion |
"1.1.0" | "1.2.0" |
2026-09-17T19:21:46.926Z
Fields that differed: license description
| Field | Before | After |
|---|---|---|
license |
null | "MIT-0" |
description |
"Audit JavaScript and TypeScript repository dependencies for security, supply-chain, maintenance, version, lockfile, and cleanup risks. Use for npm, pnpm, Yarn, or Bun package revi | null |
Correction
If you maintain this extension and believe anything above is inaccurate, request a correction. Corrections are published, and disputed entries are marked as disputed while under review.