Oxc Minifier Node API
84%
Total Score
healthy
Healthy package backed by active development and provenance, with workflow permissions and weak package-to-repository linkage as cautions.
The repository name does not match the package and its README does not mention this package, so the package-to-source relationship is not explicit; the monorepo context makes this plausible but still warrants verification.
The audit found eight high-confidence github-app findings where workflows inherit blanket installation permissions, creating a meaningful CI credential-hygiene concern. The audit also covered 30 of 32 workflows, although references were fully pinned and no untrusted checkout or script-injection sinks were found.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.