Installations
npm install oidc-provider-custom-logout
Developer Guide
Typescript
No
Module System
CommonJS
Min. Node Version
>=4
Node Version
7.6.0
NPM Version
4.1.2
Score
69.9
Supply Chain
95
Quality
69
Maintenance
25
Vulnerability
95.6
License
Releases
Contributors
Languages
JavaScript (98.76%)
TypeScript (0.63%)
EJS (0.61%)
Developer
panva
Download Statistics
Total Downloads
1,308
Last Day
1
Last Week
6
Last Month
11
Last Year
110
GitHub Statistics
3,301 Stars
2,538 Commits
773 Forks
72 Watching
4 Branches
67 Contributors
Package Meta Information
Latest Version
1.15.12
Package Id
oidc-provider-custom-logout@1.15.12
Size
59.07 kB
NPM Version
4.1.2
Node Version
7.6.0
Publised On
11 May 2017
Total Downloads
Cumulative downloads
Total Downloads
1,308
Last day
0%
1
Compared to previous day
Last week
100%
6
Compared to previous week
Last month
175%
11
Compared to previous month
Last year
-0.9%
110
Compared to previous year
Daily Downloads
Weekly Downloads
Monthly Downloads
Yearly Downloads
Dependencies
17
ERROR: No README data found!
No vulnerabilities found.
Reason
12 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
Reason
no dangerous workflow patterns detected
Reason
no binaries found in the repo
Reason
license file detected
Details
- Info: project has a license file: LICENSE.md:0
- Info: FSF or OSI recognized license: MIT License: LICENSE.md:0
Reason
packaging workflow detected
Details
- Info: Project packages its releases by way of GitHub Actions.: .github/workflows/release.yml:8
Reason
0 existing vulnerabilities detected
Reason
SAST tool is not run on all commits -- score normalized to 5
Details
- Warn: 1 commits out of 2 are checked with a SAST tool
Reason
dependency not pinned by hash detected -- score normalized to 4
Details
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/conformance.yml:175: update your workflow using https://app.stepsecurity.io/secureworkflow/panva/node-oidc-provider/conformance.yml/main?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/conformance.yml:177: update your workflow using https://app.stepsecurity.io/secureworkflow/panva/node-oidc-provider/conformance.yml/main?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/conformance.yml:208: update your workflow using https://app.stepsecurity.io/secureworkflow/panva/node-oidc-provider/conformance.yml/main?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/conformance.yml:233: update your workflow using https://app.stepsecurity.io/secureworkflow/panva/node-oidc-provider/conformance.yml/main?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:15: update your workflow using https://app.stepsecurity.io/secureworkflow/panva/node-oidc-provider/release.yml/main?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:19: update your workflow using https://app.stepsecurity.io/secureworkflow/panva/node-oidc-provider/release.yml/main?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:36: update your workflow using https://app.stepsecurity.io/secureworkflow/panva/node-oidc-provider/release.yml/main?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:48: update your workflow using https://app.stepsecurity.io/secureworkflow/panva/node-oidc-provider/release.yml/main?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:52: update your workflow using https://app.stepsecurity.io/secureworkflow/panva/node-oidc-provider/release.yml/main?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test.yml:35: update your workflow using https://app.stepsecurity.io/secureworkflow/panva/node-oidc-provider/test.yml/main?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test.yml:38: update your workflow using https://app.stepsecurity.io/secureworkflow/panva/node-oidc-provider/test.yml/main?enable=pin
- Info: 0 out of 11 GitHub-owned GitHubAction dependencies pinned
- Info: 1 out of 1 third-party GitHubAction dependencies pinned
- Info: 1 out of 1 npmCommand dependencies pinned
Reason
branch protection is not maximal on development and all release branches
Details
- Info: 'allow deletion' disabled on branch 'main'
- Info: 'force pushes' disabled on branch 'main'
- Info: 'branch protection settings apply to administrators' is required to merge on branch 'main'
- Warn: could not determine whether codeowners review is allowed
- Warn: no status checks found to merge onto branch 'main'
- Warn: PRs are not required to make changes on branch 'main'; or we don't have data to detect it.If you think it might be the latter, make sure to run Scorecard with a PAT or use Repo Rules (that are always public) instead of Branch Protection settings
Reason
Found 1/29 approved changesets -- score normalized to 0
Reason
detected GitHub workflow tokens with excessive permissions
Details
- Warn: jobLevel 'contents' permission set to 'write': .github/workflows/release.yml:33
- Warn: no topLevel permission defined: .github/workflows/conformance.yml:1
- Warn: no topLevel permission defined: .github/workflows/lock.yml:1
- Warn: no topLevel permission defined: .github/workflows/release.yml:1
- Warn: no topLevel permission defined: .github/workflows/retry.yml:1
- Warn: no topLevel permission defined: .github/workflows/test.yml:1
Reason
no effort to earn an OpenSSF best practices badge detected
Reason
project is not fuzzed
Details
- Warn: no fuzzer integrations found
Reason
security policy file not detected
Details
- Warn: no security policy file detected
- Warn: no security file to analyze
- Warn: no security file to analyze
- Warn: no security file to analyze
Score
5.5
/10
Last Scanned on 2025-01-27
The Open Source Security Foundation is a cross-industry collaboration to improve the security of open source software (OSS). The Scorecard provides security health metrics for open source projects.
Learn More