Plugin
version-sentinel
Hard-blocks dependency additions, bumps, and downgrades until a fresh, source-cited version check is recorded via WebSearch. Supports npm, pip, Cargo, and NuGet ecosystems. Uses PreToolUse hooks to intercept manifest edits and install commands, blocking them until the developer verifies the latest version upstream.
- Analysed
- Last observed
What the code does
- Runs hooks automatically Hooks that execute without being called explicitly.
Having a capability is not wrongdoing; many tools need these to do their job. It tells you what to check before you install.
This is public metadata, not a safety certification or complete assessment. Static analysis cannot establish what a tool does at runtime.
Risk
Sign in to see this tool's overall risk level and what drives it. Free.
Coverage
Detailed report
3 findings from automated static analysis of the latest version, with severities and explanations.
Using this tool across your team? We can assess your whole inventory.
Request an inventory assessment