/ methodology

Five stages, no shortcuts.

The pipeline behind every advisory you see in the feed. Built and operated by a single research team. Open-sourced where possible.

01

Continuous ingestion

Every new release on npm, Docker Hub, GHCR, the MCP registry, and Hugging Face is mirrored into a content-addressed store within minutes of publication.

~14k artifacts / hr
02

Static decomposition

Tarballs and OCI layers are unpacked, normalized, and fed through ASTs, opcode analyzers, and pickle/safetensor walkers to surface obfuscation, network sinks, and serialization sinks.

27 detectors
03

Behavioral sandbox

Suspicious artifacts are detonated inside ephemeral microVMs with full syscall, DNS, and filesystem tracing. We diff observed behavior against a learned baseline per ecosystem.

Firecracker · gVisor
04

Exploitability triage

Researchers reproduce the finding, score it under CVSS 3.1, write a minimal PoC, and confirm the affected version range against upstream tags.

Human in the loop
05

Coordinated disclosure

Maintainer is notified with a 90-day clock. Embargo is lifted on patch release or expiry, whichever comes first. Advisory ships with patch diff and detection rules.

90 days · firm