@cyberhub/trust-babel-core
v1.0.0
Published
Security Trust Report for @babel/core — 67/100 (B, standard). Maintainer risk and vulnerability analysis from 8 security databases.
Maintainers
Readme
Security Trust Report: @babel/core
Score: 67/100 | Grade: B | Tier: STANDARD
This package has notable risk factors. Review flags below.
Score Breakdown
| Category | Score | |----------|-------| | Maintainer Trust | 85/100 | | Package Health | 94/100 | | Supply Chain | 29/100 | | Community | 44/100 |
Vulnerabilities
No known vulnerabilities.
Flags
- CRITICAL: Package name "@babel/core" is 1 edit(s) from popular "cors"
- HIGH: Maintainer(s) removed in v7.9.6: developit
- HIGH: Maintainer(s) removed in v7.17.3: loganfsmyth, danez
- HIGH: Burst publishing detected — 5+ versions in a single day
- HIGH: Depends on historically compromised package: semver
- HIGH: 1 direct dependencies have known security issues
- HIGH: Depends on "semver" which has ReDoS CVE-2022-25883
- MEDIUM: New maintainer(s) added in v7.10.3: jlhwung
- MEDIUM: No GitHub repo found — community signals unavailable
- INFO: Published with 2FA enabled (signed)
Maintainers
- hzoo (2FA)
- existentialism (2FA)
- nicolo-ribaudo (2FA)
- jlhwung (2FA)
