Depfu continuously updates your dependencies one at a time and creates a pull request with all the info you need. You stay in control.
Cost / License
- Free Personal
- Proprietary
Platforms
- Online



PackageFix is described as 'Free browser-based dependency security fixer. Paste your manifest file and get back a fixed version with every vulnerable package patched — ready to download in one click' and is a vulnerability scanner in the development category. There are more than 10 alternatives to PackageFix, not only websites but also apps for a variety of platforms, including SaaS, Self-Hosted, Mac and Windows apps. The best PackageFix alternative is Mend Renovate, which is both free and Open Source. Other great sites and apps similar to PackageFix are Libraries.io, Aikido Security, Proscan AppSec and OWASP Dependency-Track.
Depfu continuously updates your dependencies one at a time and creates a pull request with all the info you need. You stay in control.



Mend.io offers the first AI native application security platform, purpose-built to secure AI-generated code and embedded AI components. Our unified platform enables companies to manage application risk effectively in modern software development.



NPMScan is a security analysis tool for the JavaScript ecosystem. It scans npm packages for malicious behavior and supply chain risks that are often invisible to developers. The scanner inspects scripts, dependencies, encoded payloads, metadata, and common attack patterns used...




Dependency Track SaaS provided by YourSky.blue is the managed cloud solution of the popular open-source Dependency-Track. Always up to date with the latest security bulletins, it allows to easily monitor all the chain of software components through powerful dashboards and...
