Botbuilder Core安全吗?
Botbuilder Core — Nerq Trust Score 48.2/100 (D级). 基于2个信任维度的分析,被评估为存在值得注意的安全问题。 最后更新:2026-04-05。
请对Botbuilder Core保持警惕。 Botbuilder Core 是一个npm包 Nerq 信任分数 48.2/100(D), 基于3个独立数据维度. It is below the recommended threshold of 70. Security: 90/100. Popularity: 0/100. 数据来源于npm registry, GitHub repository, NVD, OSV.dev, and OpenSSF Scorecard。最后更新:2026-04-05。 机器可读数据(JSON).
Botbuilder Core安全吗?
NO — USE WITH CAUTION — Botbuilder Core has a Nerq Trust Score of 48.2/100 (D). It has below-average trust signals with significant gaps in security, maintenance, or documentation. Not recommended for production use without thorough manual review and additional security measures.
Botbuilder Core的信任评分是多少?
Botbuilder Core 的 Nerq 信任分数为 48.2/100,等级为 D。该分数基于 2 个独立测量的维度,包括安全性、维护和社区采用。
Botbuilder Core的主要安全发现是什么?
Botbuilder Core 最强的信号是 安全性,为 90/100。 未检测到已知漏洞。 尚未达到 Nerq 认证阈值 70+。
Botbuilder Core是什么,谁在维护它?
| 开发者 | botframework |
| 类别 | npm |
| 来源 | N/A |
Botbuilder Core在其他平台
同一开发者/公司在其他注册表中:
按信任评分排列的类似Npm
Compare
Safety Guide: Botbuilder Core
What is Botbuilder Core?
Botbuilder Core is a Node.js package — Core components for Microsoft Bot Builder. Components in this library can run either in a browser or on the server..
How to Verify Safety
Run npm audit to check for vulnerabilities. Review the package's GitHub repository for recent commits.
You can also check the trust score via API: GET /v1/preflight?target=botbuilder-core
Key Safety Concerns for Node.js packages
When evaluating any Node.js package, watch for: dependency vulnerabilities, malicious packages, typosquatting.
Trust Assessment
Botbuilder Core has a Nerq Trust Score of 48/100 (D) and has not yet reached Nerq trust threshold (70+). This score is based on automated analysis of security, maintenance, community, and quality signals.
Key Takeaways
- Botbuilder Core has a Trust Score of 48/100 (D).
- Review carefully before use — below trust threshold.
- Always verify independently using the Nerq API.
常见问题
Is Botbuilder Core safe to use?
What is Botbuilder Core's trust score?
What are safer alternatives to Botbuilder Core?
Does Botbuilder Core have known vulnerabilities?
How actively maintained is Botbuilder Core?
热门 npm
Disclaimer: Nerq 信任评分是基于公开信号的自动评估。它们不构成建议或保证。请始终进行自己的验证。