1,796,946 packages matching “data-poisoning”
@hapi/bourne
v4.0.1 · 1 month ago
JSON parse with prototype poisoning protection
No known vulnerabilities
co-body
v6.2.0 · 2 years ago
request body parsing for co
No known vulnerabilities
secure-json-parse
v4.1.0 · 10 months ago
JSON parse with prototype poisoning protection
No known vulnerabilities
cache-poisoning-pwn-demo
v0.1.32 · 2 months ago
Educational demo: a deliberately vulnerable npm package showing how GitHub Actions cache poisoning can produce a malicious release without stealing any credential. Do NOT use in production.
No known vulnerabilities
@scan5/ai-guard
v0.13.0 · 24 days ago
AI security scanner and runtime enforcement for LLM applications — detects prompt injection, API key leaks, unsafe output, RAG poisoning, and agent hijacking in code and live traffic.
No known vulnerabilities
@fast-check/poisoning
v0.3.0 · 5 months ago
Set of utilities to ease detection and revert of poisoning
No known vulnerabilities
evil-pkg
v1.0.5 · 1 month ago
PoC: PATH poisoning via node_modules/.bin - untrusted packages can shadow system commands in Bun's package manager
1 unknown
toxy
v0.3.16 · 7 years ago
Hackable HTTP proxy to simulate server failure scenarios and network conditions
No known vulnerabilities
@promptshield/cli
v1.2.0 · 2 months ago
Production-grade CLI for auditing AI prompts. Detects invisible characters, homoglyph attacks, and adversarial Unicode poisoning in your development workflow.
No known vulnerabilities
shieldcortex
v4.47.31 · 2 days ago
Trustworthy memory and security for AI agents. Recall debugging, review queue, OpenClaw session capture, and memory poisoning defence for Claude Code, Codex, OpenClaw, LangChain, and MCP agents.
No known vulnerabilities
safe-memory-cache
v3.0.0 · 1 year ago
Secure and size-limited in-memory cache for Node.js and browsers
No known vulnerabilities
llm-trust-guard
v4.32.7 · 15 days ago
Comprehensive security guards for LLM-powered and agentic AI applications - 35 guards covering OWASP Top 10 for LLMs 2025, Agentic Applications 2026, and MCP Security. All guards accessible via unified TrustGuard facade. Features prompt injection (PAP/per
No known vulnerabilities
require-poisoning
v2.0.0 · 7 years ago
Cache-Poisoning applied to Node.js require statements so you inject your own modules
No known vulnerabilities
@depup/co-body
v6.2.0-depup.2 · 17 days ago
request body parsing for co (with updated dependencies)
No known vulnerabilities
mcpizy
v1.6.0 · 1 month ago
MCP management platform CLI — discover, install, and monitor MCP servers plus a local proxy that caches idempotent tool calls (real token savings) AND scans every tool response for prompt-injection / exfiltration / leaked secrets, blocking tool-poisoning
No known vulnerabilities
@stylusnexus/agentarmor
v0.2.15 · 1 day ago
Open-source agent security framework. Detects and defends against AI Agent Traps - content injection, embedded jailbreaks, RAG poisoning, data exfiltration, and more.
No known vulnerabilities
@seanhogg/builderforce-memory
v2026.7.14 · 14 days ago
BuilderForce Agent Memory — runtime layer. SSM execution, Transformer orchestration, online distillation, hybrid RAG retrieval, and persistent agent memory for BuilderForce.ai agents.
No known vulnerabilities
ssvc
v0.4.1 · 11 months ago
TypeScript implementation of SSVC (Stakeholder-Specific Vulnerability Categorization). A prioritization framework to triage CVE vulnerabilities as an alternative or compliment to CVSS
No known vulnerabilities
@getmcpm/cli
v0.28.0 · 2 days ago
MCP package manager — search, install, and audit MCP servers across Claude Desktop, Cursor, VS Code, and Windsurf
No known vulnerabilities
@askalf/truecopy
v0.10.3 · 2 days ago
own your agent skills — vet, sign, and pin every skill & MCP server before it runs. The supply-chain gate for AI agents. Part of Own Your Stack.
No known vulnerabilities