1. Using Snyk Advisor GitHub Action to vet package health when packages changes are added in PRs: https://github.com/marketplace/actions/new-dependencies-advisor 2. Add [anti-trojan-source](https://github.com/lirantal/anti-trojan-source) CLI as linter 3. Add [snync](https://github.com/snyk-labs/snync) to mitigate dependency confusion 4.