frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: DepGuard – Local dependency audit and license compliance (10 pkg mgrs)

https://github.com/suhteevah/depguard
2•suhteevah•1h ago
Hi HN,

DepGuard is a single tool that wraps native package manager audit commands (npm audit, pip-audit, cargo audit, govulncheck, etc.) and adds license compliance on top.

Why I built it: I was tired of running different audit commands for different projects and having no unified view of license risk. Snyk solves this but sends your data to the cloud. I wanted something local-only.

What it does: - Detects your package manager automatically (supports 10: npm, yarn, pnpm, pip, cargo, go, composer, bundler, maven, gradle) - Runs the native audit tool for each - Scans all dependency licenses and categorizes them (permissive/copyleft/unknown) - Generates CycloneDX SBOMs for compliance - Git hooks that block commits modifying lockfiles with critical vulns - Auto-fix by upgrading to patched versions

Design decisions: - Uses native audit tools, not a proprietary vulnerability database - Everything runs locally — no code or dep lists sent externally - License validation is offline (JWT, no phone-home) - Free: one-shot scan + license check. Pro ($19/user/mo): hooks + auto-fix. Team ($39/user/mo): SBOM + compliance.

Install: `clawhub install depguard`

Landing page: https://depguard.pages.dev

Curious if license compliance is something you've been asked about by legal/compliance teams. That's been the most requested feature in my experience.

The Data Journalism Handbook 2

https://datajournalism.com/read/handbook/two
2•Tomte•2m ago•0 comments

Ngrok.ai

https://ngrok.ai/
1•neofrommatrix•4m ago•0 comments

Black People in the Regency

https://vanessariley.com/blackpeople.php
1•bryanrasmussen•5m ago•0 comments

Show HN: WinOnly – A transparent, rule-based football match prediction engine

https://winonly.io
1•ANJSmyth•6m ago•1 comments

Washington pushes back against EU's bid for tech autonomy

https://www.politico.eu/article/eu-bid-for-tech-autonomy-washington-us-pushes-back/
1•saubeidl•9m ago•1 comments

Seeing Theory

https://seeing-theory.brown.edu/
3•Tomte•11m ago•0 comments

Lush: My favorite small programming language (2024)

https://scottlocklin.wordpress.com/2024/11/19/lush-my-favorite-small-programming-language/
1•tosh•14m ago•0 comments

Michael Abrash doubled Quake framerste

https://fabiensanglard.net/quake_asm_optimizations/index.html
1•chunkles•20m ago•0 comments

Alexei Navalny Was Murdered

2•eimrine•26m ago•0 comments

Show HN: Tufte Editor – Local Markdown Editor with Tufte CSS Live Preview

https://github.com/onedeeper/tufteeditor
1•avngr86•29m ago•0 comments

No Coding Before 10am

https://michaelxbloch.substack.com/p/no-coding-before-10am
1•imartin2k•30m ago•0 comments

The Medal Comes After the Meme

https://mikaelpawlo.substack.com/p/the-medal-comes-after-the-meme
1•imartin2k•31m ago•0 comments

The Demise of Conflict Studies

https://dissentmagazine.org/article/the-demise-of-conflict-studies/
1•hackandthink•32m ago•0 comments

What the hell is Forth? (2019)

https://blog.information-superhighway.net/what-the-hell-is-forth
3•tosh•33m ago•0 comments

Oat – Ultra-lightweight, semantic, zero-dependency HTML UI component library

https://oat.ink/
6•twapi•34m ago•1 comments

Claude Code Tips from the Guy Who Built It

https://www.anup.io/35-claude-code-tips-from-the-guy-who-built-it/
2•todsacerdoti•37m ago•0 comments

I Turned an ESP32 into a Thermal USB Webcam

https://www.youtube.com/watch?v=jyhVxC0ipE8
1•iamflimflam1•41m ago•0 comments

ByteDance Seed 2.0

https://seed.bytedance.com/en/seed2
1•tosh•41m ago•0 comments

Gemini's mobile app inherits Google's location permissions

https://support.google.com/gemini/answer/14554984?hl=en&co=GENIE.Platform%3DAndroid
1•leogout•45m ago•0 comments

Solve Everything

https://solveeverything.org/
2•o4c•49m ago•1 comments

Jailbreaking Google Translate

https://twitter.com/elder_plinius/status/2020933759533465658
1•helsinkiandrew•51m ago•0 comments

Show HN: GPACalc – Free GPA and CGPA Calculator (4.0/5.0/10.0 scales)

https://gpacalc.app/
1•YidaDev•54m ago•1 comments

Project Oberon: A Late Appraisal (2025)

https://www.youtube.com/watch?v=hZyNFaojbew
1•pjmlp•55m ago•0 comments

Marching Morons; a Year in Books; AI Character Names

https://bernoff.com/blog/marching-morons-a-year-in-books-ai-character-names-newsletter-4-february...
1•jruohonen•55m ago•0 comments

AI Shifts Concern from Technical Debt to Cognitive Debt

https://margaretstorey.com/blog/2026/02/09/cognitive-debt/
3•reasonableklout•55m ago•0 comments

Need Help, the Softraid and Lvm

1•areslee•56m ago•0 comments

Engineers are becoming sorcerers – Future of software dev with OpenAI Sherwin Wu

https://www.lennysnewsletter.com/p/engineers-are-becoming-sorcerers
1•rocho•58m ago•0 comments

Show HN: Ktrack – A simple, offline workout tracker

https://play.google.com/store/apps/details?id=com.companyname.ktrack&hl=en
1•KhashayarCodes•59m ago•0 comments

Are productivity gains due to AI hard-sell where you work?

1•newsicanuse•1h ago•0 comments

Show HN: LanceCalc – Open-source freelance platform fee calculator

https://github.com/asmahdi08/LanceCalc
1•ASMahdi•1h ago•0 comments