{"package":"cognito-passport-oauth2","ecosystem":"npm","latest_version":"1.3.1","description":"A passport strategy to authenticate against an AWS Cognito User Pool OAuth 2.0 provider and get user profile, access token and ID token. This supports providing cognito specific additional auth parameters. This is subclass of passport-oauth2 strategy.","license":"MIT","license_risk":"permissive","commercial_use_notes":"Permissive: commercial closed-source use OK; preserve the copyright notice.","homepage":"https://github.com/ajayaldo/passport-cognito-oauth2#readme","repository":"https://github.com/ajayaldo/passport-cognito-oauth2","downloads_weekly":26867,"health":{"score":59,"risk":"high","breakdown":{"maintenance":10,"popularity":10,"security":25,"maturity":12,"community":2},"deprecated":false,"max_score":100},"vulnerabilities":{"count":0,"critical":0,"high":0,"medium":0,"low":0,"details":[]},"versions":{"latest":"1.3.1","total_count":12,"recent":["1.0.0","1.0.1","1.0.2","1.0.3","1.1.3","1.1.4","1.1.5","1.0.6","1.1.6","1.2.0","1.3.0","1.3.1"]},"metadata":{"deprecated":false,"deprecated_message":null,"maintainers_count":1,"first_published":"2020-03-06T16:44:26.078Z","last_published":"2025-01-23T11:27:21.698Z","dependencies_count":2,"dependencies":["@aws-sdk/client-cognito-identity-provider","passport-oauth2"]},"github_stats":{"stars":2,"forks":1,"open_issues":4,"is_archived":false,"pushed_at":"2026-01-20T18:52:28Z","subscribers_count":1},"bundle":null,"typescript":{"score":10,"has_types":true,"types_source":"bundled","types_package":null},"known_issues":{"bugs_count":0,"bugs_severity":{},"status_breakdown":{},"link":null,"scope":"none"},"historical_compromise":null,"recommendation":{"action":"use_with_caution","issues":["Moderate health score (59/100) — verify manually"],"use_version":"1.3.1","version_hint":null,"summary":"cognito-passport-oauth2@1.3.1 low health (59/100) — consider alternatives"},"version_scoped":null,"_meta":{"endpoint":"check","tier":"full","philosophy":"DepScope is free. Use the cheapest endpoint that answers your real question.","cheaper_alternatives":[{"endpoint":"/api/exists/npm/cognito-passport-oauth2","tokens_estimated":12,"use_when":"you only need to know if the package exists (hallucination guard)"},{"endpoint":"/api/health/npm/cognito-passport-oauth2","tokens_estimated":80,"use_when":"you only need a 0-100 score for go/no-go (>=70 = safe)"},{"endpoint":"/api/prompt/npm/cognito-passport-oauth2","tokens_estimated":280,"use_when":"you want a plain-text LLM-friendly brief instead of JSON"},{"endpoint":"POST /api/check_bulk","tokens_estimated":60,"use_when":"you have 5+ packages to check; sends one round-trip instead of N"}],"docs":"https://depscope.dev/integrate"},"_cache":"hit","_response_ms":0}