Skip to content

patchtogoSecurity patches for npm packages that nobody is patching

When a CVE lands on an unmaintained or slow-moving package, patchtogo forks it, fixes it in the open and publishes a drop-in replacement you can pin with overrides.

Released under the MIT License. Patches are provided without warranty.