← back to ideas

Extension Dependency Tracker

7.3
devtools profitable added: Sunday March 2026 03:30

A platform that visualizes and tracks dependencies between open-source extensions, like those within the Open VSX registry, to proactively identify and mitigate potential supply-chain attacks like the GlassWorm campaign. Targeting developers and security professionals.

160h
mvp estimate
7.3
viability grade
12
views

technology stack

Java PostgreSQL Medium

inspired by

GlassWorm Supply-Chain Attack Abuses 72 Open VSX Extensions