npm package discovery and stats viewer.

Discover Tips

  • General search

    [free text search, go nuts!]

  • Package details

    pkg:[package-name]

  • User packages

    @[username]

Sponsor

Optimize Toolset

I’ve always been into building performant and accessible sites, but lately I’ve been taking it extremely seriously. So much so that I’ve been building a tool to help me optimize and monitor the sites that I build to make sure that I’m making an attempt to offer the best experience to those who visit them. If you’re into performant, accessible and SEO friendly sites, you might like it too! You can check it out at Optimize Toolset.

About

Hi, 👋, I’m Ryan Hefner  and I built this site for me, and you! The goal of this site was to provide an easy way for me to check the stats on my npm packages, both for prioritizing issues and updates, and to give me a little kick in the pants to keep up on stuff.

As I was building it, I realized that I was actually using the tool to build the tool, and figured I might as well put this out there and hopefully others will find it to be a fast and useful way to search and browse npm packages as I have.

If you’re interested in other things I’m working on, follow me on Twitter or check out the open source projects I’ve been publishing on GitHub.

I am also working on a Twitter bot for this site to tweet the most popular, newest, random packages from npm. Please follow that account now and it will start sending out packages soon–ish.

Open Software & Tools

This site wouldn’t be possible without the immense generosity and tireless efforts from the people who make contributions to the world and share their work via open source initiatives. Thank you 🙏

© 2025 – Pkg Stats / Ryan Hefner

secu-scan

v0.0.0

Published

scans owasp vulnerabilties

Readme

secu-scan

scans owasp vulnerabilties

oclif Version Downloads/week

Usage

$ npm install -g secu-scan
$ secu-scan COMMAND
running command...
$ secu-scan (--version)
secu-scan/0.0.0 win32-x64 node-v20.19.4
$ secu-scan --help [COMMAND]
USAGE
  $ secu-scan COMMAND
...

Commands

secu-scan config

Configure Gemini API key for security scanning

USAGE
  $ secu-scan config [-k <value>] [-s]

FLAGS
  -k, --key=<value>  Gemini API key
  -s, --show         Show current API key (masked)

DESCRIPTION
  Configure Gemini API key for security scanning

EXAMPLES
  $ secu-scan config --key YOUR_API_KEY

  $ secu-scan config --show

See code: src/commands/config/index.ts

secu-scan hello PERSON

Say hello

USAGE
  $ secu-scan hello PERSON -f <value>

ARGUMENTS
  PERSON  Person to say hello to

FLAGS
  -f, --from=<value>  (required) Who is saying hello

DESCRIPTION
  Say hello

EXAMPLES
  $ secu-scan hello friend --from oclif
  hello friend from oclif! (./src/commands/hello/index.ts)

See code: src/commands/hello/index.ts

secu-scan hello world

Say hello world

USAGE
  $ secu-scan hello world

DESCRIPTION
  Say hello world

EXAMPLES
  $ secu-scan hello world
  hello world! (./src/commands/hello/world.ts)

See code: src/commands/hello/world.ts

secu-scan help [COMMAND]

Display help for secu-scan.

USAGE
  $ secu-scan help [COMMAND...] [-n]

ARGUMENTS
  [COMMAND...]  Command to show help for.

FLAGS
  -n, --nested-commands  Include all nested commands in the output.

DESCRIPTION
  Display help for secu-scan.

See code: @oclif/plugin-help

secu-scan install

Install pre-commit hook in your git repository

USAGE
  $ secu-scan install [-p <value>]

FLAGS
  -p, --path=<value>  Path to git repository (defaults to current directory)

DESCRIPTION
  Install pre-commit hook in your git repository

EXAMPLES
  $ secu-scan install

  $ secu-scan install --path /path/to/repo

See code: src/commands/install.ts

secu-scan plugins

List installed plugins.

USAGE
  $ secu-scan plugins [--json] [--core]

FLAGS
  --core  Show core plugins.

GLOBAL FLAGS
  --json  Format output as json.

DESCRIPTION
  List installed plugins.

EXAMPLES
  $ secu-scan plugins

See code: @oclif/plugin-plugins

secu-scan plugins add PLUGIN

Installs a plugin into secu-scan.

USAGE
  $ secu-scan plugins add PLUGIN... [--json] [-f] [-h] [-s | -v]

ARGUMENTS
  PLUGIN...  Plugin to install.

FLAGS
  -f, --force    Force npm to fetch remote resources even if a local copy exists on disk.
  -h, --help     Show CLI help.
  -s, --silent   Silences npm output.
  -v, --verbose  Show verbose npm output.

GLOBAL FLAGS
  --json  Format output as json.

DESCRIPTION
  Installs a plugin into secu-scan.

  Uses npm to install plugins.

  Installation of a user-installed plugin will override a core plugin.

  Use the SECU_SCAN_NPM_LOG_LEVEL environment variable to set the npm loglevel.
  Use the SECU_SCAN_NPM_REGISTRY environment variable to set the npm registry.

ALIASES
  $ secu-scan plugins add

EXAMPLES
  Install a plugin from npm registry.

    $ secu-scan plugins add myplugin

  Install a plugin from a github url.

    $ secu-scan plugins add https://github.com/someuser/someplugin

  Install a plugin from a github slug.

    $ secu-scan plugins add someuser/someplugin

secu-scan plugins:inspect PLUGIN...

Displays installation properties of a plugin.

USAGE
  $ secu-scan plugins inspect PLUGIN...

ARGUMENTS
  PLUGIN...  [default: .] Plugin to inspect.

FLAGS
  -h, --help     Show CLI help.
  -v, --verbose

GLOBAL FLAGS
  --json  Format output as json.

DESCRIPTION
  Displays installation properties of a plugin.

EXAMPLES
  $ secu-scan plugins inspect myplugin

See code: @oclif/plugin-plugins

secu-scan plugins install PLUGIN

Installs a plugin into secu-scan.

USAGE
  $ secu-scan plugins install PLUGIN... [--json] [-f] [-h] [-s | -v]

ARGUMENTS
  PLUGIN...  Plugin to install.

FLAGS
  -f, --force    Force npm to fetch remote resources even if a local copy exists on disk.
  -h, --help     Show CLI help.
  -s, --silent   Silences npm output.
  -v, --verbose  Show verbose npm output.

GLOBAL FLAGS
  --json  Format output as json.

DESCRIPTION
  Installs a plugin into secu-scan.

  Uses npm to install plugins.

  Installation of a user-installed plugin will override a core plugin.

  Use the SECU_SCAN_NPM_LOG_LEVEL environment variable to set the npm loglevel.
  Use the SECU_SCAN_NPM_REGISTRY environment variable to set the npm registry.

ALIASES
  $ secu-scan plugins add

EXAMPLES
  Install a plugin from npm registry.

    $ secu-scan plugins install myplugin

  Install a plugin from a github url.

    $ secu-scan plugins install https://github.com/someuser/someplugin

  Install a plugin from a github slug.

    $ secu-scan plugins install someuser/someplugin

See code: @oclif/plugin-plugins

secu-scan plugins link PATH

Links a plugin into the CLI for development.

USAGE
  $ secu-scan plugins link PATH [-h] [--install] [-v]

ARGUMENTS
  PATH  [default: .] path to plugin

FLAGS
  -h, --help          Show CLI help.
  -v, --verbose
      --[no-]install  Install dependencies after linking the plugin.

DESCRIPTION
  Links a plugin into the CLI for development.

  Installation of a linked plugin will override a user-installed or core plugin.

  e.g. If you have a user-installed or core plugin that has a 'hello' command, installing a linked plugin with a 'hello'
  command will override the user-installed or core plugin implementation. This is useful for development work.


EXAMPLES
  $ secu-scan plugins link myplugin

See code: @oclif/plugin-plugins

secu-scan plugins remove [PLUGIN]

Removes a plugin from the CLI.

USAGE
  $ secu-scan plugins remove [PLUGIN...] [-h] [-v]

ARGUMENTS
  [PLUGIN...]  plugin to uninstall

FLAGS
  -h, --help     Show CLI help.
  -v, --verbose

DESCRIPTION
  Removes a plugin from the CLI.

ALIASES
  $ secu-scan plugins unlink
  $ secu-scan plugins remove

EXAMPLES
  $ secu-scan plugins remove myplugin

secu-scan plugins reset

Remove all user-installed and linked plugins.

USAGE
  $ secu-scan plugins reset [--hard] [--reinstall]

FLAGS
  --hard       Delete node_modules and package manager related files in addition to uninstalling plugins.
  --reinstall  Reinstall all plugins after uninstalling.

See code: @oclif/plugin-plugins

secu-scan plugins uninstall [PLUGIN]

Removes a plugin from the CLI.

USAGE
  $ secu-scan plugins uninstall [PLUGIN...] [-h] [-v]

ARGUMENTS
  [PLUGIN...]  plugin to uninstall

FLAGS
  -h, --help     Show CLI help.
  -v, --verbose

DESCRIPTION
  Removes a plugin from the CLI.

ALIASES
  $ secu-scan plugins unlink
  $ secu-scan plugins remove

EXAMPLES
  $ secu-scan plugins uninstall myplugin

See code: @oclif/plugin-plugins

secu-scan plugins unlink [PLUGIN]

Removes a plugin from the CLI.

USAGE
  $ secu-scan plugins unlink [PLUGIN...] [-h] [-v]

ARGUMENTS
  [PLUGIN...]  plugin to uninstall

FLAGS
  -h, --help     Show CLI help.
  -v, --verbose

DESCRIPTION
  Removes a plugin from the CLI.

ALIASES
  $ secu-scan plugins unlink
  $ secu-scan plugins remove

EXAMPLES
  $ secu-scan plugins unlink myplugin

secu-scan plugins update

Update installed plugins.

USAGE
  $ secu-scan plugins update [-h] [-v]

FLAGS
  -h, --help     Show CLI help.
  -v, --verbose

DESCRIPTION
  Update installed plugins.

See code: @oclif/plugin-plugins

secu-scan scan

Manually scan repository for OWASP top 10 vulnerabilities

USAGE
  $ secu-scan scan [-s] [-a]

FLAGS
  -a, --all     Scan all files in repository
  -s, --staged  Scan only staged changes (like pre-commit hook)

DESCRIPTION
  Manually scan repository for OWASP top 10 vulnerabilities

EXAMPLES
  $ secu-scan scan

  $ secu-scan scan --staged

  $ secu-scan scan --all

See code: src/commands/scan/index.ts