Installations
npm install @datadog/browser-rum-slim
Developer Guide
Typescript
Yes
Module System
CommonJS
Node Version
22.10.0
NPM Version
lerna/8.1.9/node@v22.10.0+x64 (linux)
Score
98.4
Supply Chain
66.5
Quality
94.6
Maintenance
100
Vulnerability
100
License
Releases
Unable to fetch releases
Contributors
Languages
TypeScript (89.58%)
JavaScript (9.81%)
CSS (0.32%)
Shell (0.14%)
Dockerfile (0.12%)
HTML (0.03%)
Developer
DataDog
Download Statistics
Total Downloads
10,547,991
Last Day
1,136
Last Week
71,711
Last Month
325,216
Last Year
3,114,836
GitHub Statistics
310 Stars
2,571 Commits
140 Forks
539 Watching
193 Branches
322 Contributors
Package Meta Information
Latest Version
5.34.1
Package Id
@datadog/browser-rum-slim@5.34.1
Unpacked Size
134.11 kB
Size
43.71 kB
File Count
25
NPM Version
lerna/8.1.9/node@v22.10.0+x64 (linux)
Node Version
22.10.0
Publised On
19 Dec 2024
Total Downloads
Cumulative downloads
Total Downloads
10,547,991
Last day
-25.7%
1,136
Compared to previous day
Last week
-17.7%
71,711
Compared to previous week
Last month
-3.1%
325,216
Compared to previous month
Last year
-30.7%
3,114,836
Compared to previous year
Daily Downloads
Weekly Downloads
Monthly Downloads
Yearly Downloads
Dependencies
2
Peer Dependencies
1
Datadog Browser SDK
Collect and send browser data to Datadog.
Getting Started
Log collection
See the dedicated Datadog Browser Log Collection documentation to learn how to forward logs from your browser application to Datadog.
Real User Monitoring
See the dedicated Datadog Browser RUM Collection documentation to learn how to send RUM data from your browser application to Datadog.
npm packages
This repository contains several packages:
Package | npm | size |
---|---|---|
browser-logs | ||
browser-rum | ||
browser-rum-slim | ||
browser-rum-core | ||
browser-worker | ||
browser-core |
CDN bundles
Datadog provides one CDN bundle per site:
No vulnerabilities found.
Reason
30 commit(s) and 5 issue activity found in the last 90 days -- score normalized to 10
Reason
no dangerous workflow patterns detected
Reason
no binaries found in the repo
Reason
license file detected
Details
- Info: project has a license file: LICENSE:0
- Info: FSF or OSI recognized license: Apache License 2.0: LICENSE:0
Reason
SAST tool is run on all commits
Details
- Info: SAST configuration detected: CodeQL
- Info: all commits (26) are checked with a SAST tool
Reason
detected GitHub workflow tokens with excessive permissions
Details
- Info: jobLevel 'actions' permission set to 'read': .github/workflows/codeql-analysis.yml:14
- Info: jobLevel 'contents' permission set to 'read': .github/workflows/codeql-analysis.yml:15
- Warn: no topLevel permission defined: .github/workflows/codeql-analysis.yml:1
- Info: no jobLevel write permissions found
Reason
Found 24/28 approved changesets -- score normalized to 8
Reason
4 existing vulnerabilities detected
Details
- Warn: Project is vulnerable to: GHSA-67hx-6x53-jw92
- Warn: Project is vulnerable to: GHSA-pxg6-pf52-xh8x
- Warn: Project is vulnerable to: GHSA-3xgq-45jj-v275
- Warn: Project is vulnerable to: GHSA-mwcw-c2x4-8c55
Reason
no effort to earn an OpenSSF best practices badge detected
Reason
security policy file not detected
Details
- Warn: no security policy file detected
- Warn: no security file to analyze
- Warn: no security file to analyze
- Warn: no security file to analyze
Reason
project is not fuzzed
Details
- Warn: no fuzzer integrations found
Reason
dependency not pinned by hash detected -- score normalized to 0
Details
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:20: update your workflow using https://app.stepsecurity.io/secureworkflow/DataDog/browser-sdk/codeql-analysis.yml/main?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:23: update your workflow using https://app.stepsecurity.io/secureworkflow/DataDog/browser-sdk/codeql-analysis.yml/main?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:29: update your workflow using https://app.stepsecurity.io/secureworkflow/DataDog/browser-sdk/codeql-analysis.yml/main?enable=pin
- Warn: containerImage not pinned by hash: Dockerfile:1: pin your Docker image by updating node:22.12.0-bookworm-slim to node:22.12.0-bookworm-slim@sha256:a4b757cd491c7f0b57f57951f35f4e85b7e1ad54dbffca4cf9af0725e1650cd8
- Warn: downloadThenRun not pinned by hash: Dockerfile:64-65
- Warn: npmCommand not pinned by hash: scripts/cli:51
- Info: 0 out of 3 GitHub-owned GitHubAction dependencies pinned
- Info: 0 out of 1 containerImage dependencies pinned
- Info: 0 out of 1 downloadThenRun dependencies pinned
- Info: 0 out of 1 npmCommand dependencies pinned
Score
6.9
/10
Last Scanned on 2024-12-23
The Open Source Security Foundation is a cross-industry collaboration to improve the security of open source software (OSS). The Scorecard provides security health metrics for open source projects.
Learn More