node-forge

npm

Is node-forge safe to use?

The latest brin safety scan flagged node-forge v1.3.3 with risk indicators that warrant review. No known CVE vulnerabilities. Trust score: 75/100. Review the findings below before use. This is an automated assessment and may contain errors.

Install (safety-checked)

node-forge Has Warnings

Warnings detected due to potential concerns

warning
CVEs

0

Threats

0

Install Scripts

0

Risk Indicators

  • Can spawn child processes

brin Recommendations

  • This package has warnings detected. Evaluate the specific concerns before proceeding.

Install with brin add node-forge to automatically apply these checks before installation.

This is an automated, point-in-time assessment and may contain errors. Findings are risk indicators, not confirmed threats. Security posture may change over time. Maintainers can dispute findings via the brin review process.

node-forge Capabilities & Permissions

What node-forge can access when installed. Review these capabilities before using with AI agents like Cursor, Claude Code, or Codex.

Network Access

This package makes network requests.

crestidg.com)datatracker.ietf.orgevanjones.cagithub.comkevin.vanzonneveld.netkevin.vanzonneveld.net)myserver.com,myserver.com.snipplr.comstackoverflow.com+11 more
Protocols: http, https

Process Spawning

This package can spawn child processes.

AGENTS.md for node-forge

Good instructions lead to good results. brin adds node-forge documentation to your AGENTS.md so your agent knows how to use it properly—improving both safety and performance.

brin init

Vercel's research: 100% accuracy with AGENTS.md vs 53% without →

node-forge Documentation & Source Code

For the full node-forge README, API documentation, and source code, visit the official package registry.

Frequently asked questions about node-forge safety

Weekly Downloads

27.9M

Version

1.3.3

License

(BSD-3-Clause OR GPL-2.0)

Last Scanned

Jan 31, 2026

Trust Score

75/100·Legitimacy signals, not safety

Capabilities

Network

Connects to: crestidg.com), datatracker.ietf.org, evanjones.ca...

Process

Spawns child processes

Is node-forge Safe? | npm Safety Scan - brin