package-doctor
Scans Python dependencies for exploited CVEs and abandoned packages
Desktopfreeglobal
package-doctor scans Python dependencies for exploited CVEs and abandoned packages handling untrusted input, prioritizing risk by CISA's Known Exploited Vulnerabilities catalog and EPSS exploit-probability scores, running in CI or as a Claude Code hook. It's built for developers who want dependency security prioritized by real-world exploitation data instead of an undifferentiated list of every known CVE.
Categories
securitysupply-chain
Something wrong with this listing — dead link, not a real product, wrong info?

