@sentry/bundler-plugin-core

npm

Is @sentry/bundler-plugin-core safe to use?

The latest brin safety scan flagged @sentry/bundler-plugin-core v4.9.0 with risk indicators that warrant review. No known CVE vulnerabilities. Trust score: 65/100. Review the findings below before use. This is an automated assessment and may contain errors.

Install (safety-checked)

@sentry/bundler-plugin-core Has Warnings

Warnings detected due to potential concerns

warning
CVEs

0

Threats

0

Install Scripts

0

Risk Indicators

  • Can spawn child processes

brin Recommendations

  • This package has warnings detected. Evaluate the specific concerns before proceeding.

Install with brin add @sentry/bundler-plugin-core to automatically apply these checks before installation.

This is an automated, point-in-time assessment and may contain errors. Findings are risk indicators, not confirmed threats. Security posture may change over time. Maintainers can dispute findings via the brin review process.

@sentry/bundler-plugin-core Capabilities & Permissions

What @sentry/bundler-plugin-core can access when installed. Review these capabilities before using with AI agents like Cursor, Claude Code, or Codex.

Network Access

This package makes network requests.

4c2bae7d9fbc413e8f7385f55c515d51@o1.ingest.sentry.iobuddy.worksbuildkite.comcircleci.comcirrus-ci.orgcodefresh.iocoolify.iodatatracker.ietf.orgdev.todevcenter.bitrise.io+31 more
Protocols: http, https

Filesystem Access

Reads from the filesystem.

.env (r)node_modules (r)package.json (r)node_modules (r)package.json (r).env (r)node_modules (r)package.json (r)

Process Spawning

This package can spawn child processes.

git

Environment Variables

Accesses the following environment variables.

APPVEYOR_PULL_REQUEST_HEAD_COMMITAPPVEYOR_REPO_COMMITAWS_COMMIT_IDBITBUCKET_COMMITBUDDY_EXECUTION_REVISIONBUILDKITE_COMMITBUILD_SOURCEVERSIONBUILD_VCS_NUMBERCF_PAGES_COMMIT_SHACF_REVISION+46 more

AGENTS.md for @sentry/bundler-plugin-core

Good instructions lead to good results. brin adds @sentry/bundler-plugin-core documentation to your AGENTS.md so your agent knows how to use it properly—improving both safety and performance.

brin init

Vercel's research: 100% accuracy with AGENTS.md vs 53% without →

@sentry/bundler-plugin-core Documentation & Source Code

For the full @sentry/bundler-plugin-core README, API documentation, and source code, visit the official package registry.

Frequently asked questions about @sentry/bundler-plugin-core safety

Weekly Downloads

6.0M

Version

4.9.0

License

MIT

Other Versions

Last Scanned

Feb 2, 2026

Trust Score

65/100·Legitimacy signals, not safety

Capabilities

Network

Connects to: 4c2bae7d9fbc413e8f7385f55c515d51@o1.ingest.sentry.io, buddy.works, buildkite.com...

Filesystem

Reads files

Process

Spawns child processes

Environment

Accesses: APPVEYOR_PULL_REQUEST_HEAD_COMMIT, APPVEYOR_REPO_COMMIT, AWS_COMMIT_ID...

Is @sentry/bundler-plugin-core Safe? | npm Safety Scan - brin