
Our Take
The npm ecosystem has over 2 million packages, PyPI has hundreds of thousands, and AI model hubs are exploding—yet nobody was really checking if any of them were malicious until Koidex came along. Koidex scans packages, browser extensions, and AI models to tell you if they're actually safe before you install them. It catches malware, backdoors, and sketchy dependencies that would otherwise end up in your production environment. The team behind it includes Kimberly Ross, Roop Reddy, Martin Gebara El, Kumar Abhishek, Daniel Slavin, Shani Halpern, Idan Dardikman, and Amit Assaraf.
Supply chain attacks are exploding—eventStream, left-pad, colors—these aren't just horror stories, they're the reason developers are finally paying attention. One compromised package can bring down your entire infrastructure, and developers are just blindly trusting whatever lands in their package manager. The boring problem of "is this thing actually safe to use" is suddenly the most important question in software development, and Koidex is building the answer. Check them out if you're serious about protecting your stack.
The people behind Koidex
Links
Similar products worth knowing

Crowdcast 3.0
Run every type of event without switching tools
Avatar V by HeyGen
Free AI Video Generator: Create Stunning Videos with AI

Cardboard
Cursor for video editing.

Manus Skills
Package Manus workflows into reusable agent Skills
Want products like this in your inbox every morning?
Five products. Every morning. Written by someone who actually cares whether they're good or not. Free forever, unsubscribe whenever.