Informational scan, not a security audit. How this is computed.
API keys, passwords or tokens committed into the repo.
Nothing found by this check. ✓
Packages you depend on that have known security holes (CVEs).
GHSA-wgrg-5h56-jg27 Out-of-bounds write in nix::unistd::getgrouplistCVE-2021-45707 An issue was discovered in the nix crate 0.16.0 and later before 0.20. ...CVE-2022-24713 Mozilla: Denial of Service via complex regular expressionsGHSA-9hpw-r23r-xgm5 Data race in `Iter` and `IterMut`Your dependencies cross-checked against the OSV vulnerability database.
RUSTSEC-2019-0036 Type confusion if __private_get_type_id__ is overriddenRUSTSEC-2021-0119 Out-of-bounds write in nix::unistd::getgrouplistRUSTSEC-2022-0013 Regexes with large repetitions on empty sub-expressions take a very long time to parseRUSTSEC-2021-0145 Potential unaligned readRUSTSEC-2024-0375 `atty` is unmaintainedRUSTSEC-2024-0388 `derivative` is unmaintained; consider using an alternativeRUSTSEC-2017-0008 `serial` crate is unmaintainedRUSTSEC-2022-0006 Data race in `Iter` and `IterMut`Code that can be exploited: injection, hardcoded credentials and similar.
Nothing found by this check. ✓
Packages that look intentionally malicious: typosquats, sneaky install scripts.
Nothing found by this check. ✓
A signal about how the project is maintained — not a vulnerability in your code. It doesn’t affect the verdict above.
Maintenance & supply-chain hygiene. A signal about the project, not a vulnerability in your code.
This check didn’t finish — that’s not the same as “clean.” Try Check again above.