GitHub has integrated OpenSSF’s malicious-packages repository to provide automated malware advisory alerts across eight major package ecosystems. This unified importer approach streamlines security detection for developers, moving beyond npm-specific monitoring to secure the broader software supply chain.