Hacker News new | ask | show | jobs
by varunsharma07 1514 days ago
I agree. There are projects such as https://github.com/ossf/package-analysis and https://github.com/step-security/harden-runner that do behavior analysis. Disclosure: I’m maintainer of the second one.