66
Security score
0 known advisories in v0.1.0
OpenSSF Scorecard 2.0/10
Weekly downloads
Downloads across all versions in the last 7 days, from the official npm downloads API (api.npmjs.org).—
Unpacked size
Size of v0.1.0 on disk after npm install extracts the tarball, as reported by the npm registry.—
Dependencies
Direct runtime dependencies declared by v0.1.0. Transitive dependencies are not counted here — use the lockfile audit for the full tree.0
Last publish
When v0.1.0 was published to the registry. Long gaps can indicate an unmaintained package.13 years ago
Security advisories
Vulnerabilities affecting v0.1.0 specifically, from OSV.dev — the open database aggregating the GitHub Advisory Database (GHSA) and CVEs. Links open the full advisory.No known vulnerabilities affect v0.1.0.
OpenSSF ScorecardJul 20, 2026
OpenSSF Scorecard is an automated audit of the source repository's security practices, run by the Open Source Security Foundation. Each check scores 0-10; hover a check for what it means. Data via deps.dev.- Binary-ArtifactsNo compiled binaries are committed to the repository — binaries can't be reviewed and may hide malicious code.Result: no binaries found in the repo10
- MaintainedThe project shows recent activity: commits or issue triage within the last 90 days.Result: project is archived0
- Code-ReviewChanges are reviewed by another maintainer before landing on the main branch.Result: Found 0/5 approved changesets -- score normalized to 00
- SASTStatic analysis (e.g. CodeQL) runs on pull requests to catch bugs before merge.Result: no SAST tool detected0
- CII-Best-PracticesThe project holds an OpenSSF Best Practices badge, a self-certification of security practices.Result: no effort to earn an OpenSSF best practices badge detected0
- FuzzingThe project is fuzz-tested (e.g. OSS-Fuzz), which finds crashes and memory bugs automatically.Result: project is not fuzzed0
- Security-PolicyA SECURITY.md explains how to report vulnerabilities privately.Result: security policy file not detected0
- LicenseThe project publishes a license file.Result: license file detected10
- Branch-ProtectionThe default branch is protected: force pushes are blocked and changes require review before merging.Result: branch protection not enabled on development/release branches0