Skip to content
| Marketplace
Sign in
Visual Studio Code>Linters>DependencyAudit — Vulnerabilities on Your Import LinesNew to Visual Studio Code? Get it now.
DependencyAudit — Vulnerabilities on Your Import Lines

DependencyAudit — Vulnerabilities on Your Import Lines

Meet.Jethwa

| (0) | Free
Shows CVE severity badges on import statements using OSV.dev, with safe-version hints. License compliance, transitive scanning, and commit checks with Pro.
Installation
Launch VS Code Quick Open (Ctrl+P), paste the following command, and press enter.
Copied to clipboard
More Info

DependencyAudit — Vulnerabilities on Your Import Lines

npm audit is a separate command nobody remembers to run. DependencyAudit surfaces vulnerabilities on the import line, while you code.

Free

  • High/critical CVE badges on import statements
  • Safe-version hint + CVE details on hover
  • Vulnerability summary panel

Pro

  • License compliance — flags GPL/AGPL/copyleft in your dependencies
  • Transitive scanning across the entire lockfile
  • Pre-commit critical-vulnerability check

Vulnerability data comes from OSV.dev (queried live; nothing is sent except package names + versions). Resolves installed versions from package-lock.json.

Get a Pro key at marketplace.dashovia.com/extensions/dependency-audit.

  • Contact us
  • Jobs
  • Privacy
  • Manage cookies
  • Terms of use
  • Trademarks
© 2026 Microsoft