React Voodoo安全吗?
React Voodoo — Nerq Trust Score 68.0/100 (B-级). 基于2个信任维度的分析,被评估为总体安全但存在一些担忧。 最后更新:2026-04-05。
请谨慎使用React Voodoo。 React Voodoo 是一个npm包 Nerq 信任分数 68.0/100(B-), 基于3个独立数据维度. It is below the recommended threshold of 70. Security: 90/100. Popularity: 30/100. 数据来源于npm registry, GitHub repository, NVD, OSV.dev, and OpenSSF Scorecard。最后更新:2026-04-05。 机器可读数据(JSON).
React Voodoo安全吗?
CAUTION — React Voodoo has a Nerq Trust Score of 68.0/100 (B-). It has moderate trust signals but shows some areas of concern that warrant attention. Suitable for development use — review security and maintenance signals before production deployment.
React Voodoo的信任评分是多少?
React Voodoo 的 Nerq 信任分数为 68.0/100,等级为 B-。该分数基于 2 个独立测量的维度,包括安全性、维护和社区采用。
React Voodoo的主要安全发现是什么?
React Voodoo 最强的信号是 安全性,为 90/100。 未检测到已知漏洞。 尚未达到 Nerq 认证阈值 70+。
React Voodoo是什么,谁在维护它?
| 开发者 | n8tz |
| 类别 | npm |
| 来源 | N/A |
按信任评分排列的类似Npm
Compare
Safety Guide: React Voodoo
What is React Voodoo?
React Voodoo is a Node.js package — Faster, simplier, additive, swipeable & multidimentional animation engine for React.
How to Verify Safety
Run npm audit to check for vulnerabilities. Review the package's GitHub repository for recent commits.
You can also check the trust score via API: GET /v1/preflight?target=react-voodoo
Key Safety Concerns for Node.js packages
When evaluating any Node.js package, watch for: dependency vulnerabilities, malicious packages, typosquatting.
Trust Assessment
React Voodoo has a Nerq Trust Score of 68/100 (B-) and has not yet reached Nerq trust threshold (70+). This score is based on automated analysis of security, maintenance, community, and quality signals.
Key Takeaways
- React Voodoo has a Trust Score of 68/100 (B-).
- Review carefully before use — below trust threshold.
- Always verify independently using the Nerq API.
常见问题
Is React Voodoo safe to use?
What is React Voodoo's trust score?
What are safer alternatives to React Voodoo?
Does React Voodoo have known vulnerabilities?
How actively maintained is React Voodoo?
热门 npm
Disclaimer: Nerq 信任评分是基于公开信号的自动评估。它们不构成建议或保证。请始终进行自己的验证。