How-to GuidesSecurityDependency ProxyMalicious Package Blocking

Malicious Package Blocking

Malicious Package Database

The proxy uses the OSSF Malicious Packages dataset, which contains:

  • Known malicious packages across multiple ecosystems
  • Typosquatting packages
  • Packages with malicious code injection
  • Compromised package versions

The database is automatically updated every 2 hours to ensure the latest threat intelligence.