Best JavaScript Tools & Libraries
120 curated JavaScript tools, libraries, and open-source projects โ hand-picked and ranked by the community.
jest-dom
github:owl: Custom jest matchers to test the state of the DOM
pa11y
githubPa11y is your automated accessibility testing pal
youtube
githubOpen YouTube / Video browser-extension [top~1] Enrich your experience&choice!๐งฐ250+tweaks & smart features๐set&forget๐ - Longest-standing. Join๐งฉus?๐จโ๐ฉโ๐งโ๐ง โฎ {playback|discovery|extra player buttons|quality|codec|full tab|full screen|no distraction|shorts}
nodejs-testing-best-practices
githubBeyond the basics of Node.js testing. Including a super-comprehensive best practices list and an example app (April 2025)
dredd
githubLanguage-agnostic HTTP API Testing Tool
CodeceptJS
githubSupercharged End 2 End Testing Framework for NodeJS
UserScripts
githubGreasemonkey scripts ( Pagetual / Picviewer CE+ / DownloadAllContent ) ๆฒน็ด่ ณๆฌ้ ใฆใผใถใผในใฏใชใใ้
retire.js
githubscanner detecting the use of JavaScript libraries with known vulnerabilities. Can also generate an SBOM of the libraries it finds.
vm2
githubAdvanced vm/sandbox for Node.js
qunit
github๐ฎ An easy-to-use JavaScript unit testing framework.
shhgit
githubAh shhgit! Find secrets in your code. Secrets detection for your GitHub, GitLab and Bitbucket repositories.
reverse-shell-generator
githubHosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)
jest-image-snapshot
githubโจ Jest matcher for image comparisons. Most commonly used for visual regression testing.
stegcloak
githubHide secrets with invisible characters in plain text securely using passwords ๐ง๐ปโโ๏ธโญ
cloudsploit
githubCloud Security Posture Management (CSPM)
node-rate-limiter-flexible
githubAtomic and non-atomic counters and rate limiting tools. Limit resource access at any scale.
twofactorauth
githubList of sites with two factor auth support which includes SMS, email, phone calls, hardware, and software.
express-gateway
githubA microservices API Gateway built on top of Express.js
pwndoc
githubPentest Report Generator
organice
githubAn implementation of Org mode without the dependency of Emacs - built for mobile and desktop browsers
Pi.Alert
githubWIFI / LAN intruder detector. Check the devices connected and alert you with unknown devices. It also warns of the disconnection of "always connected" devices
Shuffle
githubShuffle: A general purpose security automation platform. Our focus is on collaboration and resource sharing.
nothing-private
githubDo you think you are safe using private browsing or incognito mode?. :smile: :imp: This will prove that you're wrong. Previously hosted at nothingprivate.ml
cloudsplaining
githubCloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.