
FixBeacon: dependency scans that stay close to the repo
If you maintain real services, "we have Dependabot" is not the whole story. You still end up bouncing between PR noise, registries, advisories, and spreadsheets when you want a single place to answer: what is exposed right now, how bad is it, and what should we do next? That gap is what we're building toward with FixBeacon — a dependency and vulnerability dashboard tied to the repositories you care about. What you can try today The app lives here: https://app.fixbeacon.dev/ In the current experience you can: Connect GitHub (and work with Azure DevOps flows where enabled in the product). Add repositories to a workspace and run scans from the dashboard. See severity breakdowns , installed packages (with vulnerable packages highlighted), and trend views over time. Open a detail panel for a finding with identifiers, ecosystem context, and update-oriented guidance when the data supports it (target version, notes links, and similar signals). Browse a public intelligence feed with ecosystem f
Continue reading on Dev.to
Opens in a new tab



