Portable and language managers
npm install -g carrot-scanlocal npm package metadata
npm / Rang 877
Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für carrot-scan in AI-Agent-Workflows.
Installation
sudo av install npm:carrot-scannpm install -g carrot-scanlocal npm package metadata
Überblick
Command-line tool for detecting vulnerabilities in files and directories.
Sicherheitslage
Für carrot-scan wurde kein passendes lokales Secret-Handling-Manifest gefunden. Nucleus-Paketmetadaten bleiben hier veröffentlicht, damit künftige Abdeckung eine stabile Paket-URL hat.
Prüfe vor unbeaufsichtigter Agent-Nutzung, ob das Tool Klartext-Credentials liest, Remote-Zustand schreibt, Artefakte veröffentlicht oder Plugins ausführt.
Executables
| Befehl | Art | Sichtbarkeit | Hinweis |
|---|---|---|---|
carrot-scan | cli | global executable |
Aktualität
Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.
https://github.com/SonoTommy/carrot-scan
Installationsmetadaten
| Package key | npm:carrot-scan |
|---|---|
| Version | 6.0.1 |
| Package manager | npm |
| Package manager page | https://www.npmjs.com/package/carrot-scan |
| Homepage | https://github.com/SonoTommy/carrot-scan#readme |
| Repository | https://github.com/SonoTommy/carrot-scan |
| Upstream docs | https://github.com/SonoTommy/carrot-scan#readme |
| License | MIT |
| Source archive | https://registry.npmjs.org/carrot-scan/-/carrot-scan-6.0.1.tgz |
| Issue tracker | https://github.com/SonoTommy/carrot-scan/issues |
| Last updated | 2025-07-07T09:58:52.520Z |
| Published | 2025-07-07T09:58:52.520Z |
| Dependencies | @carrot-scan/core, @fastify/swagger, @fastify/swagger-ui, chalk, commander, fastify, figlet, inquirer, open, open-cli, yaml |
| Build dependencies | @eslint/js, eslint, eslint-config-prettier, eslint-plugin-import, eslint-plugin-prettier, eslint-plugin-security, eslint-plugin-unicorn, execa, globals, jest, jest-cli, js-x-ray, prettier, semgrep |
| Bottle | not recorded |
| npm postinstall | defined |
| Service | none declared |
| Keywords | scanner, quality, cli, antivirus, cybersecurity, js, cli-tool, scan, terminal, api, fast, easy, module, scanning, malware-analysis |
registry facts
| Source Database | npm registry |
|---|---|
| Dist Tags | |
| Version Count | 27,708 |
| Maintainers |
|
| Author | SonoTommy [https://github.com/SonoTommy] |
| Publisher | justsouichi |
| Funding | https://ko-fi.com/sonotommy |
| Integrity | sha512-y2sdPDCpOD5YJ87Qm81hrwHn8vTckMQGcvPvdQ+hLuhoB+VAdOVj54KFQQhZmkMUbYaAAeRdnLcSAb4gKGn+Iw== |
| Shasum | 9c8b4efb64534d439c28d7f13a8a8637cd6c4a31 |
| Unpacked Size | 202,448 |
| File Count | 0 |
| Created At | 2025-06-23T20:17:40.124Z |
| Latest Published At | 2025-07-07T09:58:52.520Z |
| Modified At | 2025-07-07T11:22:49.790Z |
Quellspur
Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.