Node Package Release Action安全吗?
Node Package Release Action — Nerq Trust Score 71.5/100 (B级). 基于2个信任维度的分析,被评估为总体安全但存在一些担忧。 最后更新:2026-04-05。
是的,Node Package Release Action可以安全使用。 Node Package Release Action 是一个npm包 Nerq 信任分数 71.5/100(B), 基于3个独立数据维度. It is 推荐生产环境使用. Security: 90/100. Popularity: 15/100. 数据来源于npm registry, GitHub repository, NVD, OSV.dev, and OpenSSF Scorecard。最后更新:2026-04-05。 机器可读数据(JSON).
Node Package Release Action安全吗?
YES — Node Package Release Action has a Nerq Trust Score of 71.5/100 (B). It meets Nerq's trust threshold with strong signals across security, maintenance, and community adoption. 推荐生产环境使用 — review the full report below for specific considerations.
Node Package Release Action的信任评分是多少?
Node Package Release Action 的 Nerq 信任分数为 71.5/100,等级为 B。该分数基于 2 个独立测量的维度,包括安全性、维护和社区采用。
Node Package Release Action的主要安全发现是什么?
Node Package Release Action 最强的信号是 安全性,为 90/100。 未检测到已知漏洞。 达到 Nerq 认证阈值 70+。
Node Package Release Action是什么,谁在维护它?
| 开发者 | catchen |
| 类别 | npm |
| 来源 | N/A |
按信任评分排列的类似Npm
Compare
Safety Guide: Node Package Release Action
What is Node Package Release Action?
Node Package Release Action is a Node.js package — This GitHub Action automates Node package version bumps and GitHub releases..
How to Verify Safety
Run npm audit to check for vulnerabilities. Review the package's GitHub repository for recent commits.
You can also check the trust score via API: GET /v1/preflight?target=node-package-release-action
Key Safety Concerns for Node.js packages
When evaluating any Node.js package, watch for: dependency vulnerabilities, malicious packages, typosquatting.
Trust Assessment
Node Package Release Action has a Nerq Trust Score of 72/100 (B) and meets Nerq trust threshold. This score is based on automated analysis of security, maintenance, community, and quality signals.
Key Takeaways
- Node Package Release Action has a Trust Score of 72/100 (B).
- Recommended for use — passes trust threshold.
- Always verify independently using the Nerq API.
常见问题
Is Node Package Release Action safe to use?
What is Node Package Release Action's trust score?
What are safer alternatives to Node Package Release Action?
Does Node Package Release Action have known vulnerabilities?
How actively maintained is Node Package Release Action?
热门 npm
Disclaimer: Nerq 信任评分是基于公开信号的自动评估。它们不构成建议或保证。请始终进行自己的验证。