{"id":424,"url":"https://github.com/nixos/nixpkgs","last_synced_at":"2026-07-28T12:20:39.286Z","repository":{"id":3486903,"uuid":"4542716","full_name":"NixOS/nixpkgs","owner":"NixOS","description":"Nix Packages collection \u0026 NixOS","archived":false,"fork":false,"pushed_at":"2025-10-24T07:14:30.000Z","size":2452881,"stargazers_count":22180,"open_issues_count":16932,"forks_count":17037,"subscribers_count":267,"default_branch":"master","last_synced_at":"2025-10-24T07:14:38.472Z","etag":null,"topics":["hacktoberfest","linux","nix","nixos","nixpkgs"],"latest_commit_sha":null,"homepage":"","language":"Nix","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"mit","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/NixOS.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":"CONTRIBUTING.md","funding":null,"license":"COPYING","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null,"zenodo":null,"notice":null,"maintainers":null,"copyright":null,"agents":null,"dco":null,"cla":null},"funding":{"open_collective":"nixos","github":"nixos"}},"created_at":"2012-06-04T02:49:46.000Z","updated_at":"2025-10-24T07:07:25.000Z","dependencies_parsed_at":"2024-03-16T21:04:29.650Z","dependency_job_id":"bbe37b4e-9a18-405f-8a18-4447e39d8f90","html_url":"https://github.com/NixOS/nixpkgs","commit_stats":{"total_commits":494171,"total_committers":9107,"mean_commits":54.26287471176018,"dds":0.8533847595265607,"last_synced_commit":"687eaa3b99dbabbb205998ff5de4e8c85071917e"},"previous_names":[],"tags_count":129,"template":false,"template_full_name":null,"purl":"pkg:github/NixOS/nixpkgs","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/NixOS%2Fnixpkgs","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/NixOS%2Fnixpkgs/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/NixOS%2Fnixpkgs/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/NixOS%2Fnixpkgs/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/NixOS","download_url":"https://codeload.github.com/NixOS/nixpkgs/tar.gz/refs/heads/master","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/NixOS%2Fnixpkgs/sbom","scorecard":{"id":102012,"data":{"date":"2025-08-11","repo":{"name":"github.com/NixOS/nixpkgs","commit":"b6705ec38912ac1e784126e9e08b807a74f38e24"},"scorecard":{"version":"v5.2.1-40-gf6ed084d","commit":"f6ed084d17c9236477efd66e5b258b9d4cc7b389"},"score":4.3,"checks":[{"name":"Maintained","score":10,"reason":"30 commit(s) and 3 issue activity found in the last 90 days -- score normalized to 10","details":null,"documentation":{"short":"Determines if the project is \"actively maintained\".","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#maintained"}},{"name":"Code-Review","score":9,"reason":"Found 19/20 approved changesets -- score normalized to 9","details":null,"documentation":{"short":"Determines if the project requires human code review before pull requests (aka merge requests) are merged.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#code-review"}},{"name":"CII-Best-Practices","score":0,"reason":"no effort to earn an OpenSSF best practices badge detected","details":null,"documentation":{"short":"Determines if the project has an OpenSSF (formerly CII) Best Practices Badge.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#cii-best-practices"}},{"name":"License","score":10,"reason":"license file detected","details":["Info: project has a license file: COPYING:0","Info: FSF or OSI recognized license: MIT License: COPYING:0"],"documentation":{"short":"Determines if the project has defined a license.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#license"}},{"name":"Packaging","score":-1,"reason":"packaging workflow not detected","details":["Warn: no GitHub/GitLab publishing workflow detected."],"documentation":{"short":"Determines if the project is published as a package that others can easily download, install, easily update, and uninstall.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#packaging"}},{"name":"Signed-Releases","score":-1,"reason":"no releases found","details":null,"documentation":{"short":"Determines if the project cryptographically signs release artifacts.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#signed-releases"}},{"name":"Branch-Protection","score":3,"reason":"branch protection is not maximal on development and all release branches","details":["Info: 'allow deletion' disabled on branch 'master'","Info: 'force pushes' disabled on branch 'master'","Warn: 'branch protection settings apply to administrators' is disabled on branch 'master'","Warn: 'stale review dismissal' is disabled on branch 'master'","Warn: branch 'master' does not require approvers","Warn: codeowners review is not required on branch 'master'","Warn: 'last push approval' is disabled on branch 'master'","Warn: 'up-to-date branches' is disabled on branch 'master'","Info: status check found to merge onto on branch 'master'","Info: PRs are required in order to make changes on branch 'master'"],"documentation":{"short":"Determines if the default and release branches are protected with GitHub's branch protection settings.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#branch-protection"}},{"name":"Token-Permissions","score":0,"reason":"detected GitHub workflow tokens with excessive permissions","details":["Warn: jobLevel 'statuses' permission set to 'write': .github/workflows/eval.yml:160","Warn: jobLevel 'statuses' permission set to 'write': .github/workflows/pr.yml:92","Warn: jobLevel 'statuses' permission set to 'write': .github/workflows/push.yml:45","Info: topLevel 'contents' permission set to 'read': .github/workflows/backport.yml:13","Info: found token with 'none' permissions: .github/workflows/build.yml:1","Info: found token with 'none' permissions: .github/workflows/check.yml:1","Info: found token with 'none' permissions: .github/workflows/codeowners-v2.yml:1","Info: found token with 'none' permissions: .github/workflows/edited.yml:1","Info: found token with 'none' permissions: .github/workflows/eval.yml:1","Info: found token with 'none' permissions: .github/workflows/lint.yml:1","Info: found token with 'none' permissions: .github/workflows/periodic-merge-24h.yml:1","Info: found token with 'none' permissions: .github/workflows/periodic-merge-6h.yml:1","Warn: no topLevel permission defined: .github/workflows/periodic-merge.yml:1","Info: found token with 'none' permissions: .github/workflows/pr.yml:1","Info: found token with 'none' permissions: .github/workflows/push.yml:1","Info: found token with 'none' permissions: .github/workflows/review-dismissed.yml:1","Info: found token with 'none' permissions: .github/workflows/reviewers.yml:1"],"documentation":{"short":"Determines if the project's workflows follow the principle of least privilege.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#token-permissions"}},{"name":"Security-Policy","score":9,"reason":"security policy file detected","details":["Info: security policy file detected: github.com/NixOS/.github/SECURITY.md:1","Info: Found linked content: github.com/NixOS/.github/SECURITY.md:1","Warn: One or no descriptive hints of disclosure, vulnerability, and/or timelines in security policy","Info: Found text in security policy: github.com/NixOS/.github/SECURITY.md:1"],"documentation":{"short":"Determines if the project has published a security policy.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#security-policy"}},{"name":"Dangerous-Workflow","score":0,"reason":"dangerous workflow patterns detected","details":["Warn: untrusted code checkout '${{ github.event.pull_request.head.sha }}': .github/workflows/backport.yml:38"],"documentation":{"short":"Determines if the project's GitHub Action workflows avoid dangerous patterns.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#dangerous-workflow"}},{"name":"Fuzzing","score":0,"reason":"project is not fuzzed","details":["Warn: no fuzzer integrations found"],"documentation":{"short":"Determines if the project uses fuzzing.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#fuzzing"}},{"name":"SAST","score":0,"reason":"SAST tool is not run on all commits -- score normalized to 0","details":["Warn: 0 commits out of 30 are checked with a SAST tool"],"documentation":{"short":"Determines if the project uses static code analysis.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#sast"}},{"name":"Binary-Artifacts","score":10,"reason":"no binaries found in the repo","details":null,"documentation":{"short":"Determines if the project has generated executable (binary) artifacts in the source repository.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#binary-artifacts"}},{"name":"Pinned-Dependencies","score":7,"reason":"dependency not pinned by hash detected -- score normalized to 7","details":["Info: Possibly incomplete results: error parsing shell code: / must be followed by an expression: lib/fileset/tests.sh:0","Info: Possibly incomplete results: error parsing shell code: invalid var name: pkgs/applications/emulators/wine/setup-hook-darwin.sh:0","Info: Possibly incomplete results: error parsing shell code: @ cannot be followed by a word: pkgs/build-support/bintools-wrapper/add-darwin-ldflags-before.sh:0","Info: Possibly incomplete results: error parsing shell code: invalid var name: pkgs/build-support/bintools-wrapper/add-flags.sh:0","Info: Possibly incomplete results: error parsing shell code: invalid @ expansion operator \"suffixSalt@-\": pkgs/build-support/bintools-wrapper/add-hardening.sh:0","Info: Possibly incomplete results: error parsing shell code: @ cannot be followed by a word: pkgs/build-support/cc-wrapper/add-flags.sh:0","Info: Possibly incomplete results: error parsing shell code: @ cannot be followed by a word: pkgs/build-support/cc-wrapper/add-gnat-extra-flags.sh:0","Info: Possibly incomplete results: error parsing shell code: invalid @ expansion operator \"suffixSalt@-\": pkgs/build-support/cc-wrapper/add-hardening.sh:0","Info: Possibly incomplete results: error parsing shell code: invalid var name: pkgs/build-support/pkg-config-wrapper/add-flags.sh:0","Info: Possibly incomplete results: error parsing shell code: invalid var name: pkgs/build-support/setup-hooks/role.bash:0","Info: Possibly incomplete results: error parsing shell code: invalid @ expansion operator \"suffixSalt@:-@fallback_sdk@\": pkgs/build-support/wrapper-common/darwin-sdk-setup.bash:0","Info: Possibly incomplete results: error parsing shell code: invalid @ expansion operator \"wrapperName@_TARGET_BUILD_@suffixSalt@:-\": pkgs/build-support/wrapper-common/utils.bash:0","Info: Possibly incomplete results: error parsing shell code: invalid var name: pkgs/by-name/ap/apple-sdk/setup-hooks/role.bash:0","Info: Possibly incomplete results: error parsing shell code: invalid var name: pkgs/by-name/ge/geant4/datasets-hook.sh:0","Info: Possibly incomplete results: error parsing shell code: invalid var name: pkgs/development/interpreters/python/hooks/setuptools-rust-hook.sh:0","Info: Possibly incomplete results: error parsing shell code: invalid var name: pkgs/development/tools/simavr/setup-hook-darwin.sh:0","Info: Possibly incomplete results: error parsing shell code: invalid var name: pkgs/os-specific/bsd/openbsd/pkgs/compatHook/setup-hook.sh:0","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/eval.yml:128: update your workflow using https://app.stepsecurity.io/secureworkflow/NixOS/nixpkgs/eval.yml/master?enable=pin","Warn: nugetCommand not pinned by hash: pkgs/build-support/dotnet/build-dotnet-module/hook/dotnet-hook.sh:28: pin your dependecies by either enabling central package management (https://learn.microsoft.com/nuget/consume-packages/Central-Package-Management) or using a lockfile (https://learn.microsoft.com/nuget/consume-packages/package-references-in-project-files#locking-dependencies)","Warn: npmCommand not pinned by hash: pkgs/build-support/node/import-npm-lock/hooks/npm-config-hook.sh:37","Warn: npmCommand not pinned by hash: pkgs/by-name/ty/typescript/update.bash:12","Warn: downloadThenRun not pinned by hash: pkgs/development/interpreters/python/cpython/docs/generate.sh:7","Warn: npmCommand not pinned by hash: .github/workflows/check.yml:51","Warn: npmCommand not pinned by hash: .github/workflows/labels.yml:50","Info:  41 out of  42 GitHub-owned GitHubAction dependencies pinned","Info:  15 out of  15 third-party GitHubAction dependencies pinned","Info:   1 out of   5 npmCommand dependencies pinned","Info:   0 out of   1 downloadThenRun dependencies pinned","Info:   0 out of   1 nugetCommand dependencies pinned"],"documentation":{"short":"Determines if the project has declared and pinned the dependencies of its build process.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#pinned-dependencies"}},{"name":"Vulnerabilities","score":0,"reason":"309 existing vulnerabilities detected","details":["Warn: Project is vulnerable to: GHSA-h5c3-5r3r-rr8q","Warn: Project is vulnerable to: GHSA-rmvr-2pp2-xj38","Warn: Project is vulnerable to: GHSA-xx4v-prfh-6cgc","Warn: Project is vulnerable to: GHSA-5c5f-7vfq-3732","Warn: Project is vulnerable to: GHSA-mqcp-p2hv-vw6x","Warn: Project is vulnerable to: RUSTSEC-2025-0012","Warn: Project is vulnerable to: RUSTSEC-2024-0421 / GHSA-h97m-ww89-6jmq","Warn: Project is vulnerable to: RUSTSEC-2024-0384","Warn: Project is vulnerable to: RUSTSEC-2023-0003 / GHSA-m4ch-rfv5-x5g3","Warn: Project is vulnerable to: RUSTSEC-2024-0013 / GHSA-22q8-ghmq-63vf","Warn: Project is vulnerable to: RUSTSEC-2023-0022 / GHSA-3gxf-9r58-2ghg","Warn: Project is vulnerable to: RUSTSEC-2023-0024 / GHSA-6hcf-g6gr-hhcr","Warn: Project is vulnerable to: RUSTSEC-2023-0023 / GHSA-9qwg-crg9-m2vc","Warn: Project is vulnerable to: RUSTSEC-2023-0044 / GHSA-xcf7-rvmh-g6q4","Warn: Project is vulnerable to: RUSTSEC-2023-0072 / GHSA-xphf-cx8h-7q9g","Warn: Project is vulnerable to: GHSA-q445-7m23-qrmw","Warn: Project is vulnerable to: RUSTSEC-2024-0357","Warn: Project is vulnerable to: RUSTSEC-2025-0004 / GHSA-rpmj-rpgj-qmpm","Warn: Project is vulnerable to: RUSTSEC-2023-0018 / GHSA-mc8h-8q98-g5hr","Warn: Project is vulnerable to: RUSTSEC-2021-0023 / GHSA-w7j2-35mf-95p7","Warn: Project is vulnerable to: RUSTSEC-2021-0127","Warn: Project is vulnerable to: GHSA-2rxc-gjrp-vjhx","Warn: Project is vulnerable to: RUSTSEC-2024-0404","Warn: Project is vulnerable to: RUSTSEC-2021-0145 / GHSA-g98v-hv3f-hcfr","Warn: Project is vulnerable to: RUSTSEC-2024-0375","Warn: Project is vulnerable to: RUSTSEC-2020-0168","Warn: Project is vulnerable to: GHSA-c827-hfw6-qwvm","Warn: Project is vulnerable to: GHSA-968p-4wvh-cqc8","Warn: Project is vulnerable to: GHSA-v6h2-p8h4-qcjw","Warn: Project is vulnerable to: GHSA-grv7-fg5c-xmjg","Warn: Project is vulnerable to: GHSA-3xgq-45jj-v275","Warn: Project is vulnerable to: GHSA-fjxv-7rqg-78g4","Warn: Project is vulnerable to: GHSA-952p-6rrq-rcjv","Warn: Project is vulnerable to: GHSA-3h5v-q93c-6h6q","Warn: Project is vulnerable to: GHSA-qq5c-677p-737q","Warn: Project is vulnerable to: GHSA-6377-hfv9-hqf6","Warn: Project is vulnerable to: GHSA-jjxq-ff2g-95vh","Warn: Project is vulnerable to: RUSTSEC-2022-0078 / GHSA-f85w-wvc7-crwc","Warn: Project is vulnerable to: RUSTSEC-2023-0034 / GHSA-f8vr-r385-rh5r","Warn: Project is vulnerable to: RUSTSEC-2024-0003 / GHSA-8r5v-vm4m-4g25","Warn: Project is vulnerable to: RUSTSEC-2024-0332 / GHSA-q6cp-qfwq-4gcv","Warn: Project is vulnerable to: RUSTSEC-2024-0019 / GHSA-r8w9-5wcg-vfj7","Warn: Project is vulnerable to: RUSTSEC-2020-0016","Warn: Project is vulnerable to: RUSTSEC-2024-0436","Warn: Project is vulnerable to: RUSTSEC-2025-0010","Warn: Project is vulnerable to: GHSA-4p46-pwfr-66x6","Warn: Project is vulnerable to: RUSTSEC-2025-0009","Warn: Project is vulnerable to: GHSA-c86p-w88r-qvqr","Warn: Project is vulnerable to: RUSTSEC-2024-0336 / GHSA-6g7w-8wpp-frhj","Warn: Project is vulnerable to: RUSTSEC-2023-0001 / GHSA-7rrj-xr53-82p7","Warn: Project is vulnerable to: RUSTSEC-2023-0005 / GHSA-4q83-7cq4-p6wg","Warn: Project is vulnerable to: GHSA-rr8g-9fpq-6wmg","Warn: Project is vulnerable to: RUSTSEC-2025-0023","Warn: Project is vulnerable to: RUSTSEC-2023-0052 / GHSA-8qv2-5vq6-g2g7","Warn: Project is vulnerable to: RUSTSEC-2021-0139","Warn: Project is vulnerable to: RUSTSEC-2024-0413","Warn: Project is vulnerable to: RUSTSEC-2024-0416","Warn: Project is vulnerable to: RUSTSEC-2024-0412","Warn: Project is vulnerable to: RUSTSEC-2024-0418","Warn: Project is vulnerable to: RUSTSEC-2024-0415","Warn: Project is vulnerable to: RUSTSEC-2024-0420","Warn: Project is vulnerable to: RUSTSEC-2021-0079 / GHSA-5h46-h7hh-c6x9","Warn: Project is vulnerable to: RUSTSEC-2021-0078 / GHSA-f3pg-qwvg-p99c","Warn: Project is vulnerable to: RUSTSEC-2022-0022 / GHSA-f67m-9j94-qv9j","Warn: Project is vulnerable to: GHSA-4fcv-w3qc-ppgg","Warn: Project is vulnerable to: RUSTSEC-2025-0022","Warn: Project is vulnerable to: RUSTSEC-2024-0370","Warn: Project is vulnerable to: RUSTSEC-2023-0081","Warn: Project is vulnerable to: RUSTSEC-2020-0071 / GHSA-wcg3-cvx6-7396","Warn: Project is vulnerable to: RUSTSEC-2020-0027 / GHSA-j79j-cx3h-g27h","Warn: Project is vulnerable to: RUSTSEC-2021-0144 / GHSA-pp8r-vv2j-9j5v","Warn: Project is vulnerable to: RUSTSEC-2021-0019 / GHSA-2xpg-3hx4-fm9r / GHSA-3288-cwgw-ch86 / GHSA-3cj3-jrrp-9rxf / GHSA-mp6r-fgw2-rxfx","Warn: Project is vulnerable to: RUSTSEC-2020-0097 / GHSA-c8hq-x4mm-p6q6","Warn: Project is vulnerable to: RUSTSEC-2024-0388","Warn: Project is vulnerable to: RUSTSEC-2020-0056","Warn: Project is vulnerable to: RUSTSEC-2024-0320","Warn: Project is vulnerable to: GHSA-2hvr-h6gw-qrxp","Warn: Project is vulnerable to: GHSA-rfj2-q3h3-hm5j","Warn: Project is vulnerable to: GHSA-r5w3-xm58-jv6j","Warn: Project is vulnerable to: GHSA-j3xp-wfr4-hx87","Warn: Project is vulnerable to: GHSA-2326-pfpj-vx3h","Warn: Project is vulnerable to: RUSTSEC-2023-0086","Warn: Project is vulnerable to: RUSTSEC-2018-0017","Warn: Project is vulnerable to: RUSTSEC-2021-0124 / GHSA-fg7r-2g4j-5cgr","Warn: Project is vulnerable to: GHSA-pq67-2wwv-3xjx","Warn: Project is vulnerable to: GHSA-8cj5-5rvv-wf4v","Warn: Project is vulnerable to: GHSA-353f-x4gh-cqq8","Warn: Project is vulnerable to: RUSTSEC-2022-0041 / GHSA-qc84-gqf4-9926","Warn: Project is vulnerable to: RUSTSEC-2019-0036 / RUSTSEC-2020-0036 / GHSA-jq66-xh47-j9f3 / GHSA-r98r-j25q-rmpr","Warn: Project is vulnerable to: RUSTSEC-2020-0070 / GHSA-5wg8-7c9q-794v / GHSA-gmv4-vmx3-x9f3 / GHSA-hj9h-wrgg-hgmx / GHSA-ppj3-7jw3-8vc4 / GHSA-vh4p-6j7g-f4j9","Warn: Project is vulnerable to: RUSTSEC-2023-0045 / GHSA-wfg4-322g-9vqv","Warn: Project is vulnerable to: GHSA-qx2v-8332-m4fv","Warn: Project is vulnerable to: GHSA-pg9f-39pc-qf8g","Warn: Project is vulnerable to: RUSTSEC-2025-0024","Warn: Project is vulnerable to: GHSA-36jr-mh4h-2g58","Warn: Project is vulnerable to: GHSA-gxpj-cx7g-858c","Warn: Project is vulnerable to: GHSA-rc47-6667-2j5j","Warn: Project is vulnerable to: GHSA-2p57-rm9w-gvfp","Warn: Project is vulnerable to: GHSA-f8q6-p94x-37v3","Warn: Project is vulnerable to: GHSA-qrpm-p2h7-hrv2","Warn: Project is vulnerable to: GHSA-mwcw-c2x4-8c55","Warn: Project is vulnerable to: GHSA-h7cp-r72f-jxh6","Warn: Project is vulnerable to: GHSA-v62p-rq8g-8h59","Warn: Project is vulnerable to: GHSA-7fh5-64p2-3v2j","Warn: Project is vulnerable to: GHSA-vx3p-948g-6vhq","Warn: Project is vulnerable to: GHSA-f5x3-32g6-xq36","Warn: Project is vulnerable to: GHSA-4wf5-vphf-c2xc","Warn: Project is vulnerable to: GHSA-52f5-9888-hmc6","Warn: Project is vulnerable to: RUSTSEC-2022-0090 / GHSA-jw36-hf63-69r9","Warn: Project is vulnerable to: RUSTSEC-2023-0042 / GHSA-87mf-9wg6-ppf8","Warn: Project is vulnerable to: RUSTSEC-2021-0073 / GHSA-x4qm-mcjq-v2gf","Warn: Project is vulnerable to: RUSTSEC-2023-0071 / GHSA-4grx-2x9w-596c / GHSA-c38w-74pg-36hr","Warn: Project is vulnerable to: GHSA-xmrp-424f-vfpx","Warn: Project is vulnerable to: RUSTSEC-2024-0363","Warn: Project is vulnerable to: GHSA-rp65-9cf3-cjxr","Warn: Project is vulnerable to: GHSA-76c9-3jph-rj3q","Warn: Project is vulnerable to: GHSA-4v9v-hfq4-rm2v","Warn: Project is vulnerable to: GHSA-9jgg-88mc-972h","Warn: Project is vulnerable to: RUSTSEC-2022-0056","Warn: Project is vulnerable to: RUSTSEC-2024-0006 / GHSA-r7qv-8r2h-pg27","Warn: Project is vulnerable to: RUSTSEC-2018-0006 / GHSA-hv87-47h9-jcvq","Warn: Project is vulnerable to: RUSTSEC-2022-0081","Warn: Project is vulnerable to: GHSA-wf5p-g6vw-rhxx","Warn: Project is vulnerable to: GHSA-jr5f-v2jv-69x6","Warn: Project is vulnerable to: GHSA-p6mc-m468-83gw","Warn: Project is vulnerable to: GHSA-cf4h-3jhx-xvhq","Warn: Project is vulnerable to: RUSTSEC-2024-0373 / GHSA-vr26-jcq5-fjj8","Warn: Project is vulnerable to: GHSA-hg9j-64wp-m9px","Warn: Project is vulnerable to: GHSA-3527-qv2q-pfvx","Warn: Project is vulnerable to: GHSA-c2pc-g5qf-rfrf","Warn: Project is vulnerable to: GHSA-j3f9-p6hm-5w6q","Warn: Project is vulnerable to: GHSA-2rxp-v6pw-ch6m","Warn: Project is vulnerable to: GHSA-4xqq-m2hx-25v8","Warn: Project is vulnerable to: GHSA-5866-49gr-22v4","Warn: Project is vulnerable to: GHSA-r55c-59qm-vjw6","Warn: Project is vulnerable to: GHSA-vmwr-mc7x-5vc3","Warn: Project is vulnerable to: GHSA-gx9m-whjm-85jf","Warn: Project is vulnerable to: GHSA-mmhx-hmjr-r674","Warn: Project is vulnerable to: GHSA-vhxf-7vqr-mrjg","Warn: Project is vulnerable to: GHSA-5pq7-52mg-hr42","Warn: Project is vulnerable to: GHSA-gxhx-g4fq-49hj","Warn: Project is vulnerable to: GHSA-vfmv-jfc5-pjjw","Warn: Project is vulnerable to: GHSA-qjxf-mc72-wjr2","Warn: Project is vulnerable to: GHSA-j3g3-5qv5-52mj","Warn: Project is vulnerable to: GHSA-rrqh-93c8-j966","Warn: Project is vulnerable to: GHSA-5w6v-399v-w3cc","Warn: Project is vulnerable to: GHSA-mrxw-mxhj-p664","Warn: Project is vulnerable to: GHSA-vvfq-8hwr-qm4m","Warn: Project is vulnerable to: GHSA-47m2-26rw-j2jw","Warn: Project is vulnerable to: GHSA-7g2v-jj9q-g3rg","Warn: Project is vulnerable to: GHSA-7wqh-767x-r66v","Warn: Project is vulnerable to: GHSA-8cgq-6mh2-7j6v","Warn: Project is vulnerable to: GHSA-gjh7-p2fx-99vx","Warn: Project is vulnerable to: GHSA-9j94-67jr-4cqj","Warn: Project is vulnerable to: GHSA-xffm-g5w8-qvg7","Warn: Project is vulnerable to: GHSA-jphg-qwrw-7w9g","Warn: Project is vulnerable to: GHSA-vg3r-rm7w-2xgh","Warn: Project is vulnerable to: RUSTSEC-2024-0411","Warn: Project is vulnerable to: RUSTSEC-2024-0414","Warn: Project is vulnerable to: GHSA-wrw7-89jp-8q8g","Warn: Project is vulnerable to: RUSTSEC-2024-0429","Warn: Project is vulnerable to: RUSTSEC-2024-0419","Warn: Project is vulnerable to: GHSA-57fm-592m-34r7","Warn: Project is vulnerable to: GHSA-76p7-773f-r4q5","Warn: Project is vulnerable to: GHSA-4vvj-4cpr-p986","Warn: Project is vulnerable to: GHSA-9cc5-2pq7-hfj8","Warn: Project is vulnerable to: RUSTSEC-2025-0018","Warn: Project is vulnerable to: GHSA-c76h-2ccp-4975","Warn: Project is vulnerable to: GHSA-cxrh-j4jr-qwg3","Warn: Project is vulnerable to: RUSTSEC-2022-0071","Warn: Project is vulnerable to: GHSA-qg5g-gv98-5ffh","Warn: Project is vulnerable to: RUSTSEC-2024-0399","Warn: Project is vulnerable to: RUSTSEC-2020-0091 / GHSA-9pqx-g3jh-qpqq","Warn: Project is vulnerable to: RUSTSEC-2022-0019 / GHSA-9g55-pg62-m8hh","Warn: Project is vulnerable to: RUSTSEC-2021-0093 / GHSA-pqqp-xmhj-wgcw","Warn: Project is vulnerable to: RUSTSEC-2022-0021 / GHSA-6888-wf7j-34jq","Warn: Project is vulnerable to: RUSTSEC-2020-0026 / GHSA-r43h-gmrm-h5c9","Warn: Project is vulnerable to: RUSTSEC-2022-0013 / GHSA-m5pq-gvj9-9vr8","Warn: Project is vulnerable to: RUSTSEC-2021-0003 / GHSA-43w2-9j62-hq99","Warn: Project is vulnerable to: RUSTSEC-2020-0163","Warn: Project is vulnerable to: RUSTSEC-2023-0058 / GHSA-36xm-35qq-795w","Warn: Project is vulnerable to: RUSTSEC-2023-0057 / GHSA-ghc8-5cgm-5rpf","Warn: Project is vulnerable to: GHSA-pph8-gcv7-4qj5","Warn: Project is vulnerable to: RUSTSEC-2025-0020","Warn: Project is vulnerable to: RUSTSEC-2022-0054 / GHSA-rc23-xxgq-x27g","Warn: Project is vulnerable to: GHSA-9c47-m6qq-7p4h","Warn: Project is vulnerable to: GHSA-5fw9-fq32-wv5p","Warn: Project is vulnerable to: GHSA-p8p7-x288-28g6","Warn: Project is vulnerable to: GHSA-72xf-g2v4-qvf3","Warn: Project is vulnerable to: GHSA-p9pc-299p-vxgp","Warn: Project is vulnerable to: GHSA-67mh-4wv8-2f99","Warn: Project is vulnerable to: GHSA-cpj6-fhp6-mr6j","Warn: Project is vulnerable to: GHSA-x574-m823-4x7w","Warn: Project is vulnerable to: GHSA-4r4m-qw57-chr8","Warn: Project is vulnerable to: GHSA-xcj6-pq6g-qj4x","Warn: Project is vulnerable to: GHSA-356w-63v5-8wf4","Warn: Project is vulnerable to: GHSA-859w-5945-r5v3","Warn: Project is vulnerable to: GHSA-4rq4-32rv-6wp6","Warn: Project is vulnerable to: GHSA-64g7-mvw6-v9qj","Warn: Project is vulnerable to: GHSA-mxhp-79qh-mcx6","Warn: Project is vulnerable to: GHSA-crh6-fp67-6883","Warn: Project is vulnerable to: GHSA-j8xg-fqg3-53r7","Warn: Project is vulnerable to: GHSA-hxf5-99xg-86hw","Warn: Project is vulnerable to: GO-2021-0356 / GHSA-8c26-wmh5-6g9v","Warn: Project is vulnerable to: GO-2024-2961","Warn: Project is vulnerable to: GO-2023-2402 / GHSA-45x7-px36-x8w8","Warn: Project is vulnerable to: GO-2024-3321 / GHSA-v778-237x-gjrc","Warn: Project is vulnerable to: GO-2025-3487 / GHSA-hcg3-q754-cr77","Warn: Project is vulnerable to: GO-2022-0493 / GHSA-p782-xgp4-8hr8","Warn: Project is vulnerable to: GO-2022-0603 / GHSA-hp87-p4gw-j4gq","Warn: Project is vulnerable to: GHSA-vfm5-rmrh-j26v","Warn: Project is vulnerable to: GHSA-7fc5-f82f-cx69","Warn: Project is vulnerable to: GHSA-vpfw-47h7-xj4g","Warn: Project is vulnerable to: GHSA-2x5m-9ch4-qgrr","Warn: Project is vulnerable to: GHSA-638j-pmjw-jq48","Warn: Project is vulnerable to: GHSA-cfjx-w229-hgx5","Warn: Project is vulnerable to: GHSA-rxv5-gxqc-xx8g","Warn: Project is vulnerable to: GHSA-w8gc-x259-rc7x","Warn: Project is vulnerable to: RUSTSEC-2021-0039 / GHSA-vpw8-43wm-rxw5","Warn: Project is vulnerable to: GHSA-jxhc-q857-3j6g","Warn: Project is vulnerable to: GHSA-q58g-455p-8vw9","Warn: Project is vulnerable to: RUSTSEC-2021-0065","Warn: Project is vulnerable to: RUSTSEC-2021-0141","Warn: Project is vulnerable to: RUSTSEC-2021-0153","Warn: Project is vulnerable to: RUSTSEC-2024-0387","Warn: Project is vulnerable to: GHSA-2gh3-rmm4-6rq5","Warn: Project is vulnerable to: RUSTSEC-2024-0437","Warn: Project is vulnerable to: GHSA-jqwc-c49r-4w2x","Warn: Project is vulnerable to: GHSA-7f6x-jwh5-m9r4","Warn: Project is vulnerable to: RUSTSEC-2024-0014","Warn: Project is vulnerable to: RUSTSEC-2022-0074 / GHSA-gfgm-chr3-x6px","Warn: Project is vulnerable to: RUSTSEC-2018-0015","Warn: Project is vulnerable to: GHSA-55f3-3qvg-8pv5","Warn: Project is vulnerable to: GHSA-9m3q-rhmv-5q44","Warn: Project is vulnerable to: GHSA-hxx2-7vcw-mqr3","Warn: Project is vulnerable to: GHSA-r95h-9x8f-r3f7","Warn: Project is vulnerable to: GHSA-xc9x-jj77-9p9j","Warn: Project is vulnerable to: RUSTSEC-2023-0051","Warn: Project is vulnerable to: RUSTSEC-2021-0137","Warn: Project is vulnerable to: RUSTSEC-2023-0059 / GHSA-jcr6-4frq-9gjj","Warn: Project is vulnerable to: GHSA-m65q-v92h-cm7q","Warn: Project is vulnerable to: RUSTSEC-2023-0040","Warn: Project is vulnerable to: RUSTSEC-2025-0040","Warn: Project is vulnerable to: RUSTSEC-2021-0120 / GHSA-5vwc-r48g-wj6c / GHSA-hfxp-p695-629x","Warn: Project is vulnerable to: RUSTSEC-2023-0020","Warn: Project is vulnerable to: RUSTSEC-2023-0076","Warn: Project is vulnerable to: GHSA-22r3-9w55-cj54","Warn: Project is vulnerable to: GHSA-c2qf-rxjj-qqgw","Warn: Project is vulnerable to: GHSA-776f-qx25-q3cc","Warn: Project is vulnerable to: GHSA-pfq8-rq6v-vf5m","Warn: Project is vulnerable to: GHSA-282f-qqgm-c34q","Warn: Project is vulnerable to: GHSA-35jh-r3h4-6jhm","Warn: Project is vulnerable to: GHSA-7p7h-4mm5-852v","Warn: Project is vulnerable to: GHSA-x8qp-wqqm-57ph","Warn: Project is vulnerable to: GHSA-7359-3c6r-hfc2","Warn: Project is vulnerable to: GHSA-cr5q-6q9f-rq6q","Warn: Project is vulnerable to: GHSA-j6gc-792m-qgm2","Warn: Project is vulnerable to: GHSA-pj73-v5mw-pm9j","Warn: Project is vulnerable to: GHSA-5cm2-9h8c-rvfx","Warn: Project is vulnerable to: GHSA-3p6v-hrg8-8qj7","Warn: Project is vulnerable to: GHSA-jppv-gw3r-w3q8","Warn: Project is vulnerable to: GHSA-jj47-x69x-mxrm","Warn: Project is vulnerable to: GHSA-v88g-cgmw-v5xw","Warn: Project is vulnerable to: GHSA-4xcv-9jjx-gfj3","Warn: Project is vulnerable to: GHSA-6fw4-hr69-g3rv","Warn: Project is vulnerable to: GHSA-3f95-r44v-8mrg","Warn: Project is vulnerable to: GHSA-28xr-mwxg-3qc8","Warn: Project is vulnerable to: GHSA-9p95-fxvg-qgq2","Warn: Project is vulnerable to: GHSA-9w5j-4mwv-2wj8","Warn: Project is vulnerable to: GHSA-22f2-v57c-j9cx","Warn: Project is vulnerable to: GHSA-3h57-hmj3-gj3p","Warn: Project is vulnerable to: GHSA-54rr-7fvw-6x8f","Warn: Project is vulnerable to: GHSA-5f9h-9pjv-v6j7","Warn: Project is vulnerable to: GHSA-65f5-mfpf-vfhj","Warn: Project is vulnerable to: GHSA-hxqx-xwvh-44m2","Warn: Project is vulnerable to: GHSA-j6w9-fv6q-3q52","Warn: Project is vulnerable to: GHSA-wq4h-7r42-5hrr","Warn: Project is vulnerable to: GHSA-xj5v-6v4g-jfw6","Warn: Project is vulnerable to: GHSA-qp49-3pvw-x4m5","Warn: Project is vulnerable to: GHSA-369m-2gv6-mw28","Warn: Project is vulnerable to: GHSA-6f62-3596-g6w7","Warn: Project is vulnerable to: GHSA-6mq2-37j5-w6r6","Warn: Project is vulnerable to: GHSA-gwfg-cqmg-cf8f","Warn: Project is vulnerable to: GHSA-r995-q44h-hr64","Warn: Project is vulnerable to: GHSA-gh9q-2xrm-x6qv","Warn: Project is vulnerable to: GHSA-mhwm-jh88-3gjf","Warn: Project is vulnerable to: GHSA-ww4x-rwq6-qpgf","Warn: Project is vulnerable to: GHSA-22h5-pq3x-2gf2","Warn: Project is vulnerable to: GHSA-gh78-48h3-frjq","Warn: Project is vulnerable to: GHSA-jcpv-g9rr-qxrc","Warn: Project is vulnerable to: GHSA-44pw-h2cw-w3vq","Warn: Project is vulnerable to: GHSA-jp4x-w63m-7wgm","Warn: Project is vulnerable to: GHSA-c429-5p7v-vgjp","Warn: Project is vulnerable to: GHSA-wrvr-8mpx-r7pp","Warn: Project is vulnerable to: GHSA-vh95-rmgr-6w4m","Warn: Project is vulnerable to: GHSA-xvch-5gv4-984h","Warn: Project is vulnerable to: GHSA-53xv-c2hx-5w6q","Warn: Project is vulnerable to: GHSA-4mxg-3p6v-xgq3","Warn: Project is vulnerable to: GHSA-f9cm-p3w6-xvr3","Warn: Project is vulnerable to: GHSA-jjv7-qpx3-h62q","Warn: Project is vulnerable to: GHSA-gqgv-6jq5-jjj9","Warn: Project is vulnerable to: GHSA-hrpp-h998-j3pp","Warn: Project is vulnerable to: GHSA-7xfp-9c55-5vqj","Warn: Project is vulnerable to: GHSA-xc7v-wxcw-j472","Warn: Project is vulnerable to: GHSA-h6q6-9hqw-rwfv","Warn: Project is vulnerable to: GHSA-5fg8-2547-mr8q","Warn: Project is vulnerable to: GHSA-69p6-wvmq-27gg","Warn: Project is vulnerable to: GHSA-pfpr-3463-c6jh","Warn: Project is vulnerable to: GHSA-pphf-gfrm-v32r"],"documentation":{"short":"Determines if the project has open, known unfixed vulnerabilities.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#vulnerabilities"}}]},"last_synced_at":"2025-08-15T10:20:26.188Z","repository_id":3486903,"created_at":"2025-08-15T10:20:26.189Z","updated_at":"2025-08-15T10:20:26.189Z"},"host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":281619494,"owners_count":26532378,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","status":"online","status_checked_at":"2025-10-29T02:00:06.901Z","response_time":59,"last_error":null,"robots_txt_status":"success","robots_txt_updated_at":"2025-07-24T06:49:26.215Z","robots_txt_url":"https://github.com/robots.txt","online":true,"can_crawl_api":true,"host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["hacktoberfest","linux","nix","nixos","nixpkgs"],"created_at":"2024-01-11T15:55:00.362Z","updated_at":"2025-10-29T12:23:46.125Z","avatar_url":"https://github.com/NixOS.png","language":"Nix","project_url":"https://opencollective.ecosyste.ms/api/v1/projects/424","html_url":"https://opencollective.ecosyste.ms/projects/424","collective":{"id":81,"uuid":"vedj9wro-z3a56dg4-vll67blg-8x4m0ykn","slug":"nixpkgs-contributors","name":"Nixpkgs Contributors","description":"Introducing an Open Collective to fund Nixpkgs Contributors, enhancing stability, support, and sustainability.","website":"","github":"nixos/nixpkgs","twitter":null,"repository_url":null,"social_links":[],"currency":"USD","projects_count":1,"last_synced_at":"2026-08-18T18:15:14.813Z","created_at":"2024-01-10T13:17:47.053Z","updated_at":"2026-08-18T18:15:14.935Z","transactions_count":0,"balance":0.0,"account_type":"COLLECTIVE","owner":{"login":"NixOS","name":"Nix/Nixpkgs/NixOS","uuid":"487568","kind":"organization","description":"","email":null,"website":"https://nixos.org/","location":"Everywhere","twitter":"nixos_org","company":null,"icon_url":"https://avatars.githubusercontent.com/u/487568?v=4","repositories_count":76,"last_synced_at":"2024-10-30T06:11:04.251Z","metadata":{"has_sponsors_listing":false,"funding":{"open_collective":"nixos","github":"nixos"}},"html_url":"https://github.com/NixOS","funding_links":["https://opencollective.com/nixos","https://github.com/sponsors/nixos"],"total_stars":42456,"followers":3342,"following":0,"created_at":"2022-11-02T16:31:07.944Z","updated_at":"2024-10-30T06:11:04.251Z","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/NixOS","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/NixOS/repositories"},"last_project_activity_at":"2025-10-24T07:14:30.000Z","archived":false,"no_funding":false,"no_license":false,"host":"opensource","collective_created_at":"2023-09-29T21:32:31.036Z","collective_updated_at":"2023-10-03T15:49:31.033Z","html_url":"https://opencollective.com/nixpkgs-contributors","icon_url":"https://images.opencollective.com/nixpkgs-contributors/logo/40.png","total_donations":0.0,"total_expenses":0.0,"current_balance":0.0,"api_url":"https://opencollective.ecosyste.ms/api/v1/collectives/nixpkgs-contributors","url":"https://opencollective.ecosyste.ms/collectives/nixpkgs-contributors","projects_url":"https://opencollective.ecosyste.ms/api/v1/collectives/nixpkgs-contributors/projects"}}