The hook
Checking npm lockfiles for known typosquat package versions is one of the modules FixVibe runs during a scan.
How it works
Mechanics write-up forthcoming.
The blast radius
Impact varies by case.
// what fixvibe checks
What FixVibe checks
FixVibe maps externally visible application surfaces with passive signals and safe metadata checks. Reports summarize the exposed surface and remediation priorities. For check-specific questions about exact detection heuristics, active payload details, or source-code rule patterns, contact support@fixvibe.app.
Ironclad defenses
Defense guidance forthcoming.
