Package Health

auth0

Auth0 Node.js SDK for the Management API v2.

Latest 7.4.0NPMNPM

91%

Total Score

healthy

A mature, actively maintained SDK with strong provenance and documentation, tempered by workflow pinning gaps.

Are you affected? Scan for Free

Health Score Breakdown

Lifecycle scriptscaution

A prepare install-time script is present, which adds a small amount of installation complexity, but the repository and package otherwise show mature build practices.

Workflow auditcaution

All five workflows were analyzed with no untrusted checkouts or script injection; however, 16 of 17 action references are unpinned and a high-confidence audit found an ad hoc package installation, leaving release hygiene as a caution.

Vulnerabilities

TitleVersionsSeverity
CVE-2020-15125
auth0 is vulnerable to Generation of Error Message Containing Sensitive Information in versions 0.0.0 - 2.27.1.
0.0.0 - 2.27.1
High

Package versions

Direct Dependencies

DependencyLast ReleaseScore
jose
Version ^5.0.0
—
—
uuid
Version ^11.1.1
—
—
auth0-legacy
Version npm:auth0@^4.37.1
—
—

Weekly Downloads

Info

Last Published
2 days ago
Created
13 years ago
Unpacked Size
12.6 MB

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform