node-sass

npm

Is node-sass safe to use?

The latest brin safety scan flagged node-sass v9.0.0 with risk indicators that warrant review. No known CVE vulnerabilities. Trust score: 75/100. Review the findings below before use. This is an automated assessment and may contain errors.

Install (safety-checked)

node-sass Has Warnings

Warnings detected due to potential concerns

warning
CVEs

0

Threats

0

Install Scripts

0

Risk Indicators

  • Contains native code
  • Can spawn child processes

brin Recommendations

  • This package has warnings detected. Evaluate the specific concerns before proceeding.

Install with brin add node-sass to automatically apply these checks before installation.

This is an automated, point-in-time assessment and may contain errors. Findings are risk indicators, not confirmed threats. Security posture may change over time. Maintainers can dispute findings via the brin review process.

node-sass Capabilities & Permissions

What node-sass can access when installed. Review these capabilities before using with AI agents like Cursor, Claude Code, or Codex.

Network Access

This package makes network requests.

aaa.example.combbb.example.comccc.example.comddd.example.comexample.comgithub.comhttp_proxy.comhttps_proxy.comproxy.comtest.com+1 more
Protocols: http, https

Filesystem Access

Reads and writes to the filesystem.

.env (r)package.json (r).env (r).env (rw).env (rw).env (rw).env (rw)package.json (rw)+11 more

Process Spawning

This package can spawn child processes.

Environment Variables

Accesses the following environment variables.

HTTPS_PROXYHTTP_PROXYNODESASS_COVPROXYSASS_BINARY_DIRSASS_BINARY_NAMESASS_BINARY_PATHSASS_BINARY_SITESASS_FORCE_BUILDSASS_PATH+13 more

Native Modules

Contains native code that runs outside the JavaScript sandbox.

nannode-gyp

AGENTS.md for node-sass

Good instructions lead to good results. brin adds node-sass documentation to your AGENTS.md so your agent knows how to use it properly—improving both safety and performance.

brin init

Vercel's research: 100% accuracy with AGENTS.md vs 53% without →

node-sass Documentation & Source Code

For the full node-sass README, API documentation, and source code, visit the official package registry.

Frequently asked questions about node-sass safety

Weekly Downloads

962.4K

Version

9.0.0

License

MIT

Last Scanned

Feb 1, 2026

Trust Score

75/100·Legitimacy signals, not safety

Capabilities

Network

Connects to: aaa.example.com, bbb.example.com, ccc.example.com...

Filesystem

Reads & Writes files

Process

Spawns child processes

Environment

Accesses: HTTPS_PROXY, HTTP_PROXY, NODESASS_COV...

Native

Contains native modules

Is node-sass Safe? | npm Safety Scan - brin