🔍 ChainWatch

Supply Chain Security Scanner

đŸ“Ļ Scanner
🚨 Live Alerts
â„šī¸ About
đŸ“Ļ

Drop package.json, requirements.txt, or pyproject.toml here

or click to select file

Or paste your dependencies:

🚨 Supply Chain Threat Alerts

Loading...

Loading alerts...

â„šī¸ About ChainWatch

đŸŽ¯ What is ChainWatch?

ChainWatch is an open-source supply chain security tool that detects typosquatting attacks, malicious packages, and suspicious dependencies in your projects.

🔍 How it Works

  • Typosquatting Detection — Compares package names against popular packages using Levenshtein distance
  • Malicious Package Database — Checks against known malicious packages
  • Maintainer Analysis — Identifies packages from new/suspicious accounts
  • Lockfile Analysis — Detects missing integrity hashes

🚀 Quick Start

# Install globally
npm install -g chainwatch

# Scan your project
chainwatch scan

# Check a single package
chainwatch check lodash

🔗 Links