Skip to content

LavaMoat

Proactive supply-chain security at runtime

What is LavaMoat?

LavaMoat is a set of tools for securing JavaScript projects against a category of attacks called software supply chain attacks.

Goal

The goal of LavaMoat is to bring added protections to modern JavaScript apps without having to rewrite them from scratch and automate a good first-start security configuration.

Scope

LavaMoat strives to protect installation, build and runtime of front-ends and back-ends running JavaScript.

Use LavaMoat

Spend 5 minutes on the basic setup and protect your project from most malicious packages on NPM.

See how!

๐ŸŒ‹ Introduction Video