| domain | securityscorecards.dev |
| summary | Here’s a summary of the website content:
This project’s maintenance and security are assessed as High, Medium, and Low respectively. It utilizes tools like Dependabot, RenovateBot, GitHub Actions, and potentially OSS-Fuzz and CodeQL for testing and static analysis. Key risk areas include checked-in binaries (High), GitHub workflow tokens (High), and pinned dependencies (Medium). Branch protection and rigorous code review are also enforced (High). A security policy is present, and the project adheres to CII Best Practices. Recent changes include consolidating the singular naming convention and adopting the OpenSSF for security assurance. |
| title | OpenSSF Scorecard |
| description | Quickly assess open source projects for risky practices |
| keywords | project, security, scorecard, does, risk, code, source, action, have, high, projects, checks, vulnerabilities, practices, more, best, build |
| upstreams |
|
| downstreams |
github.com, synopsys.com, osv.dev, debian.org, openssf.org, lfprojects.org, netlify.com |
| nslookup | A 75.2.60.5 |
| created | 2024-02-23 |
| updated | 2026-01-27 |
| summarized | 2026-01-31 |
|
|