express-session full featured MemoryStore layer without leaks!
73%
Total Score
50
100
94
88
50
No build attestation or trusted-publisher provenance is present, leaving publication origin less transparent, though this is not by itself evidence of unsafe code.
All recent commits came from one contributor, so maintenance could stall if that person becomes unavailable; the individual-owned project provides no organizational handoff signal.
There was one commit in the last 3 months from one active maintainer, indicating some current maintenance but a low pace.
The repository reports no build tooling or security scanning, limiting automated checks and supply-chain visibility for future changes.
No repository security policy is present, reducing transparency about vulnerability reporting and response practices.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
debug Version ^4.3.0 | — | — |
lru-cache Version ^4.0.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.