Official Sentry SDK for the Vercel Edge Runtime
78%
Total Score
healthy
Active maintenance is offset by broad unpinned workflow actions and a repository that does not identify this package.
No build attestation or trusted-publisher identity is present, leaving publication provenance less transparent than it could be despite the package's active project backing.
The repository name does not match the package and its README does not mention it, so the package-to-repository relationship is less transparent; the monorepo context partly explains the name mismatch but not the missing mention.
All 27 workflows were analyzed with no untrusted checkouts or script-injection findings, but 145 of 164 action references are unpinned and high-confidence github-app findings show broadly inherited app permissions. Low-confidence cache findings and an archived action add hygiene concerns.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
@sentry/core Version 11.6.0 | — | — |
@opentelemetry/api Version ^1.9.1 | — | — |
@sentry/server-utils Version 11.6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.