One line of Markdown. Live security signal from Commit — automatically updated whenever your package's risk profile changes.
Live badge previews
Badges are served as SVG — no external tracking, no JavaScript required.
Copy the snippet for your package. Click the badge to open the full audit.
Enter any npm or PyPI package name to preview its badge.
Badge preview
70–100
Low structural risk. Multiple maintainers, active development, reasonable download exposure.
40–69
Moderate concern. May have sole maintainer or high downloads — worth monitoring.
< 40
High structural risk. Significant exposure if credentials are compromised.
Any score
Sole maintainer + 10M+ weekly downloads. Profile that made axios a high-value attack target.