Preparing for system design interviews?  Try bugzed.com →

yarn-osv-audit

JSON →
library 0.1.8 ·javascript
verified Jun 18, 2026

A lightweight, zero-dependency CLI tool (v0.1.8, active development) that audits Yarn Classic (v1) lockfiles against the OSV.dev vulnerability database. It supports four output formats (compact, table, json, summary), config files, severity filtering, and allowlisting. Unlike npm audit or yarn audit, it uses the open-source OSV database and works with Yarn v1 lockfiles. Requires Node >=18. Released via GitHub Actions with npm provenance.

total hits 26
actors 6 distinct systems
last hit 16d ago human
GPTBot
4
Amazonbot
4
ByteDance
4
ClaudeBot
3
Script
1
Humans
7

top countries 🇺🇸 United States · 🇸🇬 Singapore · VN · TN · BD