6.6
bcrypt
📦 npm PackageNick Campbell
A bcrypt library for NodeJS. Keywords: bcrypt, password, auth, authentication, encryption. 21M monthly downloads. License: MIT
20,779,555 usersv6.0.0
Medium Risk6.6/10
Scanned June 2, 2026
Risk Flags
Developer identity is not verified by the platform
Runs code automatically during installation (install scripts detected)
3.0
Permissions
7.5
Developer
10.0
Data Privacy
7.0
Policy Match
Permissions (1)
Runs code during installation: node-gyp-build
script:install
Developer
NameNick Campbell
Verified PublisherUnverified
Known EntityNot recognized
Websitehttps://github.com/kelektiv/node.bcrypt.js#readme
Contactjohn.firebaugh@gmail.com
Data Flows
No external data transmission detected
This tool does not appear to send data to external servers.
Privacy Policy Analysis
Policy Status
No policy found
Policy matches observed behavior
Alternatives to Consider
Know what your tools are really doing.