{
  "slug": "socket-dev",
  "name": "Socket.dev",
  "url": "https://socket.dev",
  "cat": "review",
  "group": "ship",
  "tagline": "Supply chain malware detection",
  "price": "Free $0: 1,000 scans/mo, 3 members, 1 repository label; Team $25/dev/mo with a 5-developer minimum; Business $50/dev/mo with a 20-developer minimum; Enterprise custom; free Team accounts for open source on request",
  "tier": "mixed",
  "pick": false,
  "what": "Inspects what a package actually does rather than only matching published CVEs, detecting 70+ risk types including install scripts, unexpected network or filesystem access, obfuscated code, typosquats and outright malware. It comments on the pull request when a dependency change introduces new capabilities. Higher tiers add reachability analysis to cut CVE noise.",
  "why": "This is the direct answer to AI package hallucination and slopsquatting. When your agent adds a convincing-sounding package published last week that phones home on install, Socket blocks the pull request.",
  "warn": "Team carries a 5-developer minimum, a $125/mo floor, and Business a 20-developer minimum, so small teams pay for seats that do not exist.",
  "install": "Install the Socket GitHub App for PR comments, or run npx socket in CI",
  "category": {
    "key": "review",
    "name": "Code review, testing & security",
    "desc": "The single biggest risk in vibe coding is shipping AI code nobody read. This is the fix.",
    "group": "ship",
    "groupName": "Ship it & keep it alive"
  },
  "freshness": null,
  "health": {
    "ok": true,
    "status_code": 200,
    "final_url": "https://socket.dev/",
    "checked_at": "2026-08-19T00:17:14.278+00:00"
  },
  "corrected_at": null,
  "upstream_changed_at": null
}