Scan markdown and config files for hallucinated npm package names. Defends against slopsquatting supply chain attacks.
-
Updated
Apr 19, 2026 - TypeScript
Scan markdown and config files for hallucinated npm package names. Defends against slopsquatting supply chain attacks.
👻 Stop installing packages that don't exist. When AI hallucinates names like "flask-gpt-helper", attackers register them as malware. Phantom Guard detects slopsquatting attacks across PyPI, npm & crates.io before you install.
Detect slopsquatting attacks — AI-hallucinated packages in your dependencies. Rust CLI + GitHub Action.
Detect slopsquatting attacks by scanning dependencies for AI-hallucinated packages using a trust model trained on real attack data.
Add a description, image, and links to the slopsquatting topic page so that developers can more easily learn about it.
To associate your repository with the slopsquatting topic, visit your repo's landing page and select "manage topics."