AI can write. Trace can read. Open-source static analyzer for the 24 failure patterns that only AI writes.
-
Updated
Apr 26, 2026 - TypeScript
AI can write. Trace can read. Open-source static analyzer for the 24 failure patterns that only AI writes.
Scan markdown and config files for hallucinated npm package names. Defends against slopsquatting supply chain attacks.
👻 Stop installing packages that don't exist. When AI hallucinates names like "flask-gpt-helper", attackers register them as malware. Phantom Guard detects slopsquatting attacks across PyPI, npm & crates.io before you install.
Detect slopsquatting attacks — AI-hallucinated packages in your dependencies. Rust CLI + GitHub Action.
Block AI-hallucinated and slopsquatted npm/pip packages before they install. Pre-tool-use hook for Claude Code, by UNPWNED.
Package intelligence MCP server. Stops AI agents from installing hallucinated/malicious packages across 19 ecosystems. 22 tools, free, no auth.
Generate Rust function bodies at compile time with a proc macro that retries on errors until the code compiles or stops attempting
Detect slopsquatting attacks by scanning dependencies for AI-hallucinated packages using a trust model trained on real attack data.
Add a description, image, and links to the slopsquatting topic page so that developers can more easily learn about it.
To associate your repository with the slopsquatting topic, visit your repo's landing page and select "manage topics."