Evaluate the project package sources (such as NuGet/NPM) and analyse vulnerabilities

A good rule suggestion: