@cyberhub/trust-nuxt-cli
v1.0.0
Published
Security Trust Report for @nuxt/cli — 67/100 (B, standard). Maintainer risk and vulnerability analysis from 8 security databases.
Downloads
33
Maintainers
Readme
Security Trust Report: @nuxt/cli
Score: 67/100 | Grade: B | Tier: STANDARD
This package has notable risk factors. Review flags below.
Score Breakdown
| Category | Score | |----------|-------| | Maintainer Trust | 67/100 | | Package Health | 91/100 | | Supply Chain | 56/100 | | Community | 48/100 |
Vulnerabilities
No known vulnerabilities.
Flags
- HIGH: Maintainer(s) removed in v2.18.0: nuxtbot, antfu, atinux, pi0, clarkdo, danielroe
- HIGH: Maintainer(s) removed in v3.29.0: atinux, pi0, antfu, danielroe
- HIGH: Depends on historically compromised package: semver
- HIGH: 1 direct dependencies have known security issues
- HIGH: Depends on "semver" which has ReDoS CVE-2022-25883
- MEDIUM: New maintainer(s) added in v3.20.0: atinux, pi0, antfu, danielroe, nuxtbot
- MEDIUM: Single maintainer — bus factor risk
- MEDIUM: 28 direct dependencies
- MEDIUM: No GitHub repo found — community signals unavailable
- LOW: Erratic publish cadence — highly irregular release intervals
Maintainers
- nuxtbot (2FA)
