iml1s/aigate dependency scan

Scan lockfile dependencies for malicious packages using AI multi-model consensus

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
lockfilePath to lockfile (requirements.txt, uv.lock, package-lock.json, yarn.lock, pnpm-lock.yaml, pubspec.lock)yes
ecosystemOptional package ecosystem override (pypi, npm, pub)no""
fail-onFail threshold: malicious, suspicious, or anynomalicious
skip-aiSkip AI analysis, only run static pre-filternotrue
python-versionPython version to useno3.12
namedescription
exit-codeaigate exit code (0=safe, 1=suspicious, 2=malicious, 3=error)
reportJSON scan report