Search Results
Learn about software supply chain security and Endor Labs

Endor Labs Featured in Gartner Research on Claude Code Permissions and Agent Governance
Endor Labs was recently featured in the Gartner® report First Take: Claude Code Is Defaulting to Automated Permissions — Update Your Governance Controls, published August 24, 2026. The report examines an important change in how Claude Code handles permissions and the broader governance implications as coding agents take more actions without requiring a developer to approve each one.

Mastra npm Org Compromised: Multiple Packages Trojanized to Drop a Remote Payload via easy-day-js
A single hijacked maintainer account pushed multiple trojanized packages across the entire @mastra scope in 27 minutes, each carrying a typosquat dependency that runs a remote payload on install. Combined reach is over 28 million downloads a month.
Book a Demo
Protect your open source dependencies, secrets, and CI/CD pipelines without slowing down devs.
.png)

.png)

.png)





.png)
















.png)





























































.avif)
.avif)
%20(1).webp)

.png)

%20(1).avif)

.png)

%20(1).avif)


.webp)

%20(2).png)
%20(1).avif)

.webp)
.avif)


.avif)




%201.avif)




%20(1).avif)

%20(1).avif)
%20(1).avif)
.avif)
.avif)

.png)
.avif)
.avif)
.avif)
.avif)
.avif)
%20(2)%20(2).avif)
%20(1)%20(1).avif)

.avif)
%20(1).png)
.avif)


%20(1).avif)
%20(1).avif)

%20(1).avif)


.webp)

%20(1)%20(1).avif)
%20(1)%20(1).avif)
%20(1).avif)
%20(1).avif)
.avif)
.avif)
%20(1).avif)
.avif)
.avif)
.avif)
.avif)
.avif)
.avif)
.avif)
.avif)
%20(1).avif)
.avif)
.avif)
.avif)
.avif)
.avif)



