{"package":"hashbrown","ecosystem":"cargo","latest_version":"0.17.1","description":"A Rust port of Google's SwissTable hash map","license":"MIT OR Apache-2.0","license_risk":"permissive","commercial_use_notes":"Permissive: commercial closed-source use OK; preserve the copyright notice.","homepage":null,"repository":"https://github.com/rust-lang/hashbrown","downloads_weekly":670609095,"health":{"score":80,"risk":"low","breakdown":{"maintenance":15,"popularity":20,"security":25,"maturity":15,"community":5,"popularity_floor":0},"deprecated":false,"max_score":100},"vulnerabilities":{"count":0,"critical":0,"high":0,"medium":0,"low":0,"details":[]},"versions":{"latest":"0.17.1","total_count":56,"recent":["0.17.1","0.17.0","0.16.1","0.16.0","0.15.5","0.15.4","0.15.3","0.15.2","0.15.1","0.15.0","0.14.5","0.14.4","0.14.3","0.14.2","0.14.1","0.14.0","0.13.2","0.13.1","0.13.0","0.12.3"]},"metadata":{"deprecated":false,"deprecated_message":null,"maintainers_count":0,"first_published":"2018-10-29T14:28:15.767024Z","last_published":"2026-05-09T04:35:04.251Z","dependencies_count":0,"dependencies":[]},"github_stats":{"stars":2912,"forks":343,"open_issues":79,"is_archived":false,"pushed_at":"2026-04-20T23:47:46+00:00"},"bundle":null,"typescript":null,"known_issues":{"bugs_count":2,"bugs_severity":{"high":1,"medium":1},"status_breakdown":{"fixed":2},"link":"/api/bugs/cargo/hashbrown","scope":"all","details":[{"title":"Borsh serialization of HashMap is non-canonical","severity":"high","status":"fixed","affected_version":"0.15.0","fixed_version":"0.15.1","url":"https://github.com/rust-lang/hashbrown/issues/576"},{"title":"Borsh serialization of HashMap is non-canonical","severity":"medium","status":"fixed","affected_version":"0.15.0","fixed_version":"0.15.1","url":"https://crates.io/crates/hashbrown"}]},"historical_compromise":null,"recommendation":{"action":"safe_to_use","issues":[],"use_version":"0.17.1","version_hint":null,"summary":"hashbrown@0.17.1 is safe to use (health: 80/100)"},"version_scoped":null,"_meta":{"endpoint":"check","tier":"full","philosophy":"DepScope is free. Use the cheapest endpoint that answers your real question.","cheaper_alternatives":[{"endpoint":"/api/exists/cargo/hashbrown","tokens_estimated":12,"use_when":"you only need to know if the package exists (hallucination guard)"},{"endpoint":"/api/health/cargo/hashbrown","tokens_estimated":80,"use_when":"you only need a 0-100 score for go/no-go (>=70 = safe)"},{"endpoint":"/api/prompt/cargo/hashbrown","tokens_estimated":280,"use_when":"you want a plain-text LLM-friendly brief instead of JSON"},{"endpoint":"POST /api/check_bulk","tokens_estimated":60,"use_when":"you have 5+ packages to check; sends one round-trip instead of N"}],"docs":"https://depscope.dev/integrate"},"_cache":"hit","_response_ms":0}