depscope
Packages
IntegrateAPI DocsCuratorBenchmarkCoverage
Sign inGet API access

Related on DepScope

Alternatives
  • @sinonjs/fake-timers— Fake JavaScript timers
  • @propelauth/javascript— A library for managing authentication in the browser, backed
More
  • All npm packages →
  • Breaking changes index →
  • Bug index →
  • AI hallucination corpus →
depscope/npm/steal

steal

npmv2.3.0

Gets JavaScript.

311 versions6 maintainers19 deps5,858 weekly dl
stealjs/steal
26
/ 100
Health
do not use

steal has critical vulnerabilities — do not use

  • Moderate health score (26/100) — verify manually
  • 3 high severity vulnerabilities
  • 5 critical vulnerabilities
Health breakdown0 – 100
0/25
maintenance
6/20
popularity
0/25
security
15/15
maturity
5/15
community
Vulnerabilities
8
5 critical3 high
Advisories (8)
SeverityIDSummaryFixed in
highCVE-2022-37262steal vulnerable to Regular Expression Denial of Service via source and sourceWithComments—
highCVE-2022-37260steal vulnerable to Regular Expression Denial of Service via input variable—
criticalCVE-2022-37264steal vulnerable to Prototype Pollution via optionName variable—
criticalCVE-2022-37257steal vulnerable to Prototype Pollution via requestedVersion variable—
criticalCVE-2022-37258steal vulnerable to Prototype Pollution—
highCVE-2022-37259steal Inefficient Regular Expression Complexity vulnerability via string variable—
criticalCVE-2022-37266steal vulnerable to Prototype Pollution via key variable in babel.js—
criticalCVE-2022-37265steal vulnerable to Prototype Pollution via alias variable—

Bundle & TypeScript

🌟

TypeScript

0/10untyped
No type definitions available

Health History

Dependency Tree

License Audit

Dependencies (19)
assertbufferconsole-browserifyconstants-browserifycrypto-browserifydomain-browsereventshttp-browserifyhttps-browserifyos-browserifypath-browserifyprocesspunycoderesolvestring_decodertestee-clienttty-browserifyvm-browserifyzlib-browserify
API access

Get this data programmatically — free, no authentication.

curl https://depscope.dev/api/check/npm/steal
More from npm
semverdebugansi-stylesminimatchbrace-expansionstrip-ansi
Browse all npm packages →

First published · 2013-06-26T16:32:23.980Z

Last updated · 2022-06-09T01:33:50.137Z

DepScope

Package intelligence for AI agents. 19 ecosystems.

Resources
API DocumentationHallucination BenchmarkFor EnterpriseSwagger / OpenAPIPopular PackagesCoverageAI Plugin SetupWatch the pitch (60s)
Legal
Legal hubPrivacy PolicyTerms of ServiceCookie PolicyAcceptable UseAttributionDPASub-processorsSecurityImprintContact中文
© 2026 Cuttalo srl — Italy · VAT IT03242390734Built for AI agents