Package Health

@libp2p/webrtc

Clear documentation, type declarations, licensing, and release provenance make integration straightforward. The repository also has tests, a security policy, and active organizational support.

Latest 6.0.33NPMNPM

86%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

88

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Attestations
Attestations
Measures the presence and validity of package attestations and signatures

100

Are you affected? Scan for Free

Health Score Breakdown

Repo bus factorcaution

One contributor made about 86% of the recent commits, creating concentration risk; the organization-backed project and six other recent contributors partly reduce that concern.

Workflow auditcaution

All six workflows were analyzed with no reported audit findings or untrusted checkouts, but 47 of 56 action references are unpinned and two workflows grant top-level write permissions, leaving reproducibility and token-scope hygiene concerns.

Vulnerabilities

TitleVersionsSeverity
AIKIDO-2026-876449
@libp2p/webrtc is vulnerable to Denial of Service (DoS) in versions 5.1.0 - 6.0.27.
5.1.0 - 6.0.27
High

Package versions

Direct Dependencies

DependencyLast ReleaseScore
p-defer
Version ^4.0.1
—
—
p-event
Version ^7.0.0
—
—
get-port
Version ^7.1.0
—
—
p-timeout
Version ^7.0.0
—
—
main-event
Version ^1.0.1
—
—

Weekly Downloads

Info

Last Published
12 days ago
Created
3 years ago
Unpacked Size
2 MB

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform