Socket Security
Secure your supply chain and ship with confidence
As of June 2026, Socket Security has 2,000 users and a 5.00/5 rating from 10 reviews in the Developer Tools category.
Usersup 100.0 percent+100.0%
2.0K
2,000
Ratingno change0%
5.00
10 reviews
Reviewsno change0%
10
Version
1.5.4
Manifest V3
90-day change · In the last 90 days this extension gained 1.0K users.
History
2 snapshotsTracking since Apr 19, 2026.
View as table
| Date | Users | Rating | Reviews | Version |
|---|---|---|---|---|
| Apr 19, 2026 | 1.0K | 5.00 | 10 | 1.5.4 |
| Jun 5, 2026 | 1.0K | 5.00 | 10 | 1.5.4 |
| Now | 2.0K | 5.00 | 10 | 1.5.4 |
Permissions & access
- Permissions
- storagealarms
- Host access
- https://socket.dev/*, https://api.socket.dev/*
Screenshots
About
The Socket Security browser extension adds security metrics to your NPM package pages and search results, protecting you from threats in open-source packages before you even install them. By the time CVEs and known vulnerabilities make it to public databases, it's often too late. Using advanced code analysis techniques and AI-powered risk detection, Socket searches for malware and security vulnerabilities throughout your open-source dependency tree and defends your project against cyberattacks in advance. --- Over the past decade, it's become clear that open source software has won. Sharing code freely has made it drastically cheaper and faster to build software – and tech innovation has accelerated as a result. But security has often been an afterthought. We are a team of open source maintainers with over 1 billion monthly downloads to our names. Working on the frontlines of open source, we've witnessed firsthand how supply chain attacks have swept across our communities and damaged trust in open source. The entire security industry is obsessed with identifying known vulnerabilities. There are hundreds of variations of CVE scanners, but they all miss the point. Looking for known vulnerabilities is reactive. Vulnerabilities take weeks or months to be discovered. In today's culture of fast development, a malicious dependency can be updated, merged, and running in production in days or even hours. Unlike other tools, Socket detects and blocks supply chain attacks before they strike, mitigating the worst consequences. Socket uses deep package inspection to peel back the layers of a dependency to characterize its actual behavior. Want to defend your entire organization against open-source attacks? Install the Socket GitHub app at https://github.com/apps/socket-security and get protected today!
Technical
- Version
- 1.5.4
- Manifest
- V3
- Size
- 1.58MiB
- Min Chrome
- 88
- Languages
- 1
- Featured
- Yes
Metadata
- ID
- jbcobpbfgkhmjfpjjepkcocalmpkiaop
- Developer ID
- u8f3117cfae33a401784c65039dc4308f
- Developer Email
- [email protected]
- Created
- Jun 20, 2023
- Last Updated (Store)
- Oct 28, 2025
- Last Scraped
- Jun 5, 2026
- Website
- socket.dev
- Support URL
- https://docs.socket.dev/docs/contact-support
- Privacy Policy
- https://socket.dev/privacy
Similar extensions
Alternatives to Socket Security, ranked by description similarity.
SecuriScan - Web Security Analyzer
Lightweight security scanner that analyzes websites for common vulnerabilities and security misconfigurations
327
VulnGuard
Scans GitHub repositories for vulnerable dependencies using OSV.dev
—
VaptFinder: Vulnerability & Library Detector
Inspects websites for outdated libraries and checks browser vulnerability.
64
Overlay
description
357
★ 5.0
Smelly
Smelly: A nose for vulnerable dependencies
4
★ 5.0
AppSec Inspector
Professional security inspection tool. Scan headers, detect secrets, audit auth - all locally, no data collection.
6
CyberInject
Professional security testing toolkit for ethical hackers and penetration testers
158
VulnCheck Insights
Lookup CVEs, CPEs, and PURLs with VulnCheck
353
★ 5.0
Data sourced from the Chrome Web Store · last verified Jun 5, 2026.