Msgpack安全吗?

Msgpack — Nerq Trust Score 68.8/100 (B-级). 基于2个信任维度的分析,被评估为总体安全但存在一些担忧。 最后更新:2026-04-05。

请谨慎使用Msgpack。 Msgpack 是一个Python包 Nerq 信任分数 68.8/100(B-), 基于3个独立数据维度. It is below the recommended threshold of 70. Security: 90/100. Popularity: 100/100. 数据来源于PyPI registry, GitHub repository, NVD, OSV.dev, and OpenSSF Scorecard。最后更新:2026-04-05。 机器可读数据(JSON).

Msgpack安全吗?

CAUTION — Msgpack has a Nerq Trust Score of 68.8/100 (B-). It has moderate trust signals but shows some areas of concern that warrant attention. Suitable for development use — review security and maintenance signals before production deployment.

安全分析 → {name}隐私报告 →

Msgpack的信任评分是多少?

Msgpack 的 Nerq 信任分数为 68.8/100,等级为 B-。该分数基于 2 个独立测量的维度,包括安全性、维护和社区采用。

安全性
90
人气
100

Msgpack的主要安全发现是什么?

Msgpack 最强的信号是 人气,为 100/100。 未检测到已知漏洞。 尚未达到 Nerq 认证阈值 70+。

Security score: 90/100 (strong)
Popularity: 100/100 — community adoption

Msgpack是什么,谁在维护它?

开发者Unknown
类别pypi
来源N/A

Msgpack在其他平台

同一开发者/公司在其他注册表中:

msgpack
68/100 · gems
msgpack
57/100 · homebrew
msgpack
55/100 · crates
MsgPack
50/100 · nuget
msgpack
48/100 · npm

按信任评分排列的类似Pypi

azure-monitor-opentelemetry-exporter (78)pyyaml (78)altair (78)polars (78)certifi (78)
查看所有最安全的Pypi →

Compare

Msgpack vs azure-monitor-opentelemetry-exporterMsgpack vs pyyamlMsgpack vs altair

Safety Guide: Msgpack

What is Msgpack?

Msgpack is a Python package — MessagePack serializer.

How to Verify Safety

Run pip audit or safety check. Review on PyPI for download stats.

You can also check the trust score via API: GET /v1/preflight?target=msgpack

Key Safety Concerns for Python packages

When evaluating any Python package, watch for: dependency vulnerabilities, malicious uploads, maintenance status.

Trust Assessment

Msgpack has a Nerq Trust Score of 69/100 (B-) and has not yet reached Nerq trust threshold (70+). This score is based on automated analysis of security, maintenance, community, and quality signals.

Key Takeaways

评分详细分析

DimensionScore
Security90/100
Privacy80/100
Reliability90/100
Transparency50/100
Maintenance60/100

Based on 5 dimensions. Data from PyPI registry, GitHub repository, NVD, OSV.dev, and OpenSSF Scorecard.

Msgpack收集哪些数据?

Msgpack is a Python package maintained by Unknown. It receives approximately 51,347,457 weekly downloads.

As a development package, Msgpack does not directly collect end-user personal data. However, applications built with it may collect data depending on implementation. Privacy score: 80/100.

Review the package's dependencies for potential supply chain risks. Run your package manager's audit command regularly.

完整分析: Msgpack隐私报告 · Privacy review

Msgpack安全吗?

Security score: 90/100. Msgpack has 0 known vulnerabilities (CVEs) in the National Vulnerability Database. This is a clean record.

License information not available. Open-source packages allow independent security review of the source code.

Run your package manager's audit command (`npm audit`, `pip audit`, `cargo audit`) to check for known vulnerabilities in your dependency tree.

完整分析: Msgpack安全报告

Msgpack在其他平台

同一开发者/公司在其他注册表中:

msgpack (gems, 68/100)msgpack (homebrew, 57/100)msgpack (crates, 55/100)MsgPack (nuget, 50/100)

我们如何计算此评分

Msgpack's trust score of 68.8/100 (B-) is computed from PyPI registry, GitHub repository, NVD, OSV.dev, and OpenSSF Scorecard. The score reflects 5 independent dimensions: security (90/100), privacy (80/100), reliability (90/100), transparency (50/100), maintenance (60/100). Each dimension is weighted equally to produce the composite trust score.

Nerq analyzes over 7.5 million entities across 26 registries using the same methodology, enabling direct cross-entity comparison. Scores are updated continuously as new data becomes available.

This page was last reviewed on April 05, 2026. Data version: 1.0.

Full methodology documentation · Machine-readable data (JSON API)

常见问题

Is Msgpack safe to use?
Use with some caution. msgpack has a Nerq Trust Score of 68.8/100 (B-). Strongest signal: 人气 (100/100). Score based on security (90/100), popularity (100/100).
What is Msgpack's trust score?
msgpack: 68.8/100 (B-). Score based on: security (90/100), popularity (100/100). Scores update as new data becomes available. API: GET nerq.ai/v1/preflight?target=msgpack
What are safer alternatives to Msgpack?
In the pypi category, more Python packages are being analyzed — check back soon. msgpack scores 68.8/100.
Does Msgpack have known vulnerabilities?
Nerq checks Msgpack against NVD, OSV.dev, and registry-specific vulnerability databases. Current security score: 90/100. Run your package manager's audit command for the latest findings.
How actively maintained is Msgpack?
Msgpack has a trust score of 68.8/100 (B-). Below Nerq Verified threshold — conduct additional review.
API: /v1/preflight Trust Badge API Docs

Disclaimer: Nerq 信任评分是基于公开信号的自动评估。它们不构成建议或保证。请始终进行自己的验证。

我们使用Cookie进行分析和缓存。 隐私