by Socket
The Socket for Open Source program offers a free Team plan to open source maintainers to protect their projects from supply chain attacks.
Perks
Full dependency scanning across your project.
Real-time alerts for malicious packages in your dependency tree.
Check every PR to ensure no malicious dependencies are added, including those from outside contributors.
Eligibility
- Must be an open source maintainer.
How to Apply
- Send an email to support[at]socket[dot]dev to get set up.
Similar to Socket for Open Source
Free Team plan forever for open source projects, with full cloud platform access including PR integration, quality gates, and security scanning across 49 supported languages.
Free forever for all open source projects. Code Climate (now Qlty) provides code coverage, maintainability analysis, linting, and auto-formatting with unlimited contributors.
Free static analysis, SAST, code coverage, and automated code reviews for open source projects with unlimited public repositories and unlimited team members.