New Case Study:See how Anthropic automated 95% of dependency reviews with Socket.Learn More

flow-parser-bin

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install
f

flow-parser-bin

The Flow JavaScript parser, via bindings to the native OCaml implementation

0.258.1
52

Supply Chain Security

100

Vulnerability

47

Quality

98

Maintenance

100

License

Unpopular package

Quality

This package is not very popular.

Found 1 instance in 1 package

Native code

Supply chain risk

Contains native code (e.g., compiled binaries or shared libraries). Including native code can obscure malicious behavior.

Found 1 instance in 1 package

Trivial Package

Supply chain risk

Packages less than 10 lines of code are easily copied into your own project and may not warrant the additional supply chain risk of an external dependency.

Found 1 instance in 1 package

Install scripts

Supply chain risk

Install scripts are run when the package is installed. The majority of malware in npm is hidden in install scripts.

Found 1 instance in 1 package

Version published
Weekly downloads
438
386.67%
Maintainers
0
Weekly downloads
 
Created
Issues
710
The README file is missing

FAQs

Package last updated on 08 Jan 2025

Did you know?

Socket

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Install

Related posts