New Case Study:See how Anthropic automated 95% of dependency reviews with Socket.Learn More
Socket
Sign inDemoInstall
Socket

paseto

Package Overview
Dependencies
Maintainers
1
Versions
24
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

paseto - npm Package Compare versions

Comparing version 1.0.8 to 1.0.9

6

lib/help/crypto_worker.js

@@ -131,8 +131,6 @@ const { parentPort, Worker, isMainThread } = require('worker_threads')

const t2 = methods.hmac('sha384', preAuth, ak)
if (!timingSafeEqual(t, t2)) return false
const payload = methods.decrypt('aes-256-ctr', c, ek, n.slice(16))
if (!payload) return false
if (!timingSafeEqual(t, t2) || !payload) {
return false
}
return payload

@@ -139,0 +137,0 @@ },

{
"name": "paseto",
"version": "1.0.8",
"version": "1.0.9",
"description": "PASETO for Node.js with minimal dependencies",

@@ -5,0 +5,0 @@ "keywords": [

SocketSocket SOC 2 Logo

Product

  • Package Alerts
  • Integrations
  • Docs
  • Pricing
  • FAQ
  • Roadmap
  • Changelog

Packages

npm

Stay in touch

Get open source security insights delivered straight into your inbox.


  • Terms
  • Privacy
  • Security

Made with ⚡️ by Socket Inc