Protect against malicious open source packages 🤖
-
Updated
Oct 25, 2025 - Go
pip is a de facto standard package-management system used to install and manage software packages written in Python. Many packages can be found in the default source for packages and their dependencies — Python Package Index (PyPI).
Protect against malicious open source packages 🤖
Tool to check for dependency confusion vulnerabilities in multiple package management systems
Continuous Delivery for automating package releases (npm, cookbooks, gems, pip, jars, etc)
CLI client (and Golang module) for deps.dev API. Free access to dependencies, licenses, advisories, and other critical health and security signals for open source package versions.
Saves you from Python supply chain attack!
Serve files from a GCP bucket
Implementation of a PyPi server in Golang.
Scalable All in One Registry server that handles Packages for NPM, PyPi, Docker/Containers
Fast, simple and cross-platform Python application packaging
a universal package manager
A tool to manage components in private repo
Created by Ian Bicking, Jannis Leidel
Released April 4, 2011