This package contains the shared utility functions used across rrweb packages. See the [guide](../../guide.md) for more info on rrweb.
82%
Total Score
100
100
94
50
100
A prepublish lifecycle script is present. It can add publishing-time behavior, but this script is not an install-time execution path and is therefore only a minor concern.
The repository name does not match this package and its README does not mention the package, creating some uncertainty about package-to-repository mapping. The matching organization and monorepo-style repository context partly compensate.
No repository security policy was found. This is a transparency gap for a maintained package, although it does not by itself indicate abandonment or unsafe code.
All six workflows were analyzed, none use unpinned actions, and five scope permissions at the job level. The audit found one high-confidence, low-severity adhoc-packages issue in the release workflow, where a package is installed outside a lockfile.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.