Endor Labs provides the following security policies to identify malware in software dependencies. See Finding Policies for details on how to enable, disable, or edit malware policies.
Policy | Description | Severity |
---|---|---|
Malware | Malicious software in dependencies pose significant security risks to your applications and infrastructure. Raise findings for packages containing known malware or suspicious code patterns that may indicate malicious intent. | Critical |