Package Health

uuid

RFC9562 UUIDs

Latest 14.0.3NPMNPM

88%

Total Score

healthy

Active, well-backed project with fresh releases and contributors; workflow pinning and untrusted checkout are the main cautions.

Are you affected? Scan for Free

Health Score Breakdown

Lifecycle scriptscaution

The package declares prepack and prepare scripts. These are build or publication-related lifecycle hooks rather than evidence of a malicious install step, but they add some execution surface.

Repo toolingcaution

The project uses TypeScript, Rollup, Webpack, and npm scripts, showing an established build process; no security scanning tools were detected, which is a modest transparency gap.

Workflow auditcaution

All four workflows were analyzed, but all 10 action references are unpinned and browser.yml combines pull_request_target with an untrusted checkout. The sole cache-poisoning finding is low confidence and hygiene-level.

Vulnerabilities

TitleVersionsSeverity
AIKIDO-2026-10892
uuid is vulnerable to Out-of-bounds Write in versions 0.0.1 - 10.0.0.
0.0.1 - 10.0.0
Medium

Package versions

Maintainers

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
1 day ago
Created
15 years ago
Unpacked Size
0.1 MB

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform