panva/node-oidc-provider
78474ace5fb2
(19 hours ago)
→
d6691b1ef994
(5 hours ago)
| Measure | Before | After | Change |
|---|---|---|---|
| Readiness score | 9 | 9 | - |
| Findings to address | 123 | 128 | +5 |
| Key establishment | 32 | 32 | - |
| Files scanned | 438 | 444 | +6 |
Added
Present in the later scan and not in the earlier one.
| Finding | Assessment | Before | After |
|---|---|---|---|
SHA-256
Keyed hash in use · js.hmac
|
Reduced margin | 0 | 1 |
Count changed
The same finding, in a different number of places.
| Finding | Assessment | Before | After |
|---|---|---|---|
ECDSA
JWT signed with a classical algorithm · js.jwt.algorithm
|
Quantum-vulnerable | 30 | 33 |
Ed25519
JWT signed with a classical algorithm · js.jwt.algorithm
|
Quantum-vulnerable | 15 | 16 |
SHA-256
Hash function in use · js.hash
|
Reduced margin | 3 | 5 |
unknown
Key pair algorithm chosen at runtime · js.generatekeypair.variable
|
Could not be determined | 1 | 2 |
CSPRNG
Random number generation · js.rng
|
Quantum-safe | 19 | 23 |
HMAC
JWT signed with a classical algorithm · js.jwt.algorithm
|
Quantum-safe | 18 | 21 |
Unchanged
24 findings appear in both scans, in the same number of places. Each scan's own report lists them.