OSV Scanner
Dependency vulnerability scanning with reachability triage using Google's OSV database across npm, pip, Go, and other...
What it does
Dependency vulnerability scanning with reachability triage using Google's OSV database across npm, pip, Go, and other ecosystems.
Claude Code plugin that integrates Google's OSV Scanner for dependency vulnerability detection. Scans project dependencies for known CVEs across multiple ecosystems including npm, pip, Go, Rust, Maven, and Ruby. Performs grep-based static analysis for reachability triage, categorizing findings into FOUND_IN_SOURCE, UNCERTAIN, and NOT_FOUND_IN_GREP tiers to prioritize remediation efforts.
Capabilities
Server
Quality
deterministic score 0.56 from registry signals: · indexed on pulsemcp · has source repo · 4 github stars · registry-generated description present