Zion AI Dependency Lifeguard

Your dependencies are your biggest attack surface. Lifeguard scores every package for CVEs, maintainer health and license risk — then ships tested upgrade PRs before vulnerabilities reach production.

Scan Your Supply Chain

Capabilities

🛡️ CVE & Exploit Intel

EPSS-scored vulnerability triage — exploitability, not just severity.

📦 Maintainer Health

Bus factor, release cadence and abandonment signals per package.

⬆️ Tested Upgrade PRs

Upgrades with breaking-change analysis from API Guardian and full test runs.

⚖️ License Compliance

GPL/AGPL contamination and attribution checks with policy gates.

📋 SBOM Generation

CycloneDX/SPDX SBOMs per release, feeding Compliance Checker.

🚨 Malicious Package Watch

Typosquatting and install-script anomaly detection on new dependencies.

Part of the Zion AI Network