# Infynon Pkg

> Universal package security manager — intercepts install commands across 14 ecosystems (npm, yarn, pnpm, bun, pip, uv, poetry, cargo, go, gem, composer, nuget, hex, pub), scans lock files for CVEs via OSV.dev, auto-fixes vulnerable dependencies, deep dependency auditing, and scheduled vulnerability monitoring with email alerts.

## Facts
- Page: https://tashan.sh/capability/plugin-d4rkninja-code-guardian-infynon-pkg
- tashan id: plugin:d4rkninja/code-guardian/infynon-pkg
- Source: https://github.com/d4rkNinja/code-guardian
- Type: plugin
- Category: security
- tashan score: 28.0 / 100
- Adoption: 17.0
- Upkeep: 45.0
- Freshness: 59.0
- Evidence coverage: 84% of the inputs this score can use
- Health: active
- Instruction depth: solid
- GitHub stars: 5
- Official: no

## Install

```sh
/plugin marketplace add anthropics/claude-plugins-community
/plugin install infynon-pkg@claude-community
```

## Security audit
Not scanned. We audit npm-published capabilities; this one has no npm package we can resolve, or has not reached the queue. This is not a clean bill of health.

---
Measured 2026-09-13 by tashan (https://tashan.sh) from public evidence. Scorer s5.
