TiloBox
Back to directory
Retire.js project preview

Retire.js

Scanner detecting the use of JavaScript libraries and Node.js modules with known vulnerabilities.

LicenseApache-2.0
GitHub stars3.8k
Last commit1 weeks ago
Tags5 topics
Javascript Vulnerability ScannerRetirejs CliXss Dependency AuditNpm Security AuditSecurity
Overview

Why consider Retire.js?

Retire.js is an open-source vulnerability scanner specifically built for JavaScript ecosystems written by Erlend Oftedal. Retire.js identifies outdated client-side scripts (jQuery, Angular, Bootstrap) and npm modules containing known cross-site scripting (XSS) vulnerabilities.

Guided learning

Learn Retire.js by building

Practical setup notes, real use cases, and copy-ready examples in one focused guide.

1 min read 2 sections
In this guide2 sections

Overview of Retire.js

Retire.js scans frontend web assets and npm modules for known insecure legacy JavaScript libraries.

Quickstart

bash
1npm install -g retire
2retire --path src/

Retire.js is licensed under the Apache License Version 2.0.

Related tools

More options with a similar category or technology profile.

Retire.js FAQs

Retire.js is listed as a Developer Tools tool on TiloBox. Review the overview, features, and official documentation on this page to decide whether it solves your specific workflow.

Start with the project's GitHub repository and official website for supported installation and deployment instructions. Test the setup with representative data or a small project before rolling it out more widely.

Retire.js is listed under the Apache-2.0 license. Read the complete license text and the project's notices before using, modifying, or distributing the software.

Production readiness depends on your requirements. Review maintenance activity, security practices, documentation, backup and upgrade procedures, and compatibility with your stack; then validate it in a non-production environment.

Retire.js is listed as an alternative to WhiteSource. Compare the core workflow, deployment model, integrations, and licensing against your must-have requirements before switching.