Detect vulnerabilities in third-party open source packages automatically while you code.
Learn more about Snyk capabilities here http://bit.ly/snyk-io
Vulncost is an open source security scanner for VS Code that helps you find security vulnerabilities in open source npm packages while you code.
Receive feedback in-line with your code, such as how many vulnerabilities a package contains that you are importing.
Find security vulnerabilities in the npm packages you import
Scan HTML files and JavaScript packages from well-known CDNs
Learn more about vulnerabilities that directly affect your project and get information on how to fix them
Credits:
Voice-over: Brian Vermeer
Music: https://www.bensound.com/