The official TypeScript library for the Anthropic API
94%
Total Score
healthy
Frequent releases, active contributors, organization backing, and verified publishing make this a well-supported release.
The project uses TypeScript, Vitest, and npm scripts for builds, but no security scanning tools were detected. The missing scanning is a modest transparency and hygiene gap rather than evidence of abandonment.
| Title | Versions | Severity |
|---|---|---|
CVE-2026-41686 @anthropic-ai/sdk is vulnerable to Incorrect Permission Assignment for Critical Resource in versions 0.79.0 - 0.91.1. | 0.79.0 - 0.91.1 | Medium |
CVE-2026-34451 @anthropic-ai/sdk is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 0.79.0 - 0.81.0. | 0.79.0 - 0.81.0 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
standardwebhooks Version ^1.0.0 | — | — |
json-schema-to-ts Version ^3.1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.