| Projects | Security policy | Security reporting |
|---|---|---|
| Appium | No | No |
| Dojo | No | No |
| Node.js | Yes | https://hackerone.com/nodejs |
| webpack | Yes | webpack@opencollective.com |
| jQuery | No | security@jquery.com (?) |
| Projects | Security policy | Security reporting |
|---|---|---|
| architect | No | No |
| Intern | No | No |
| Mocha | No | Security label in issue tracker |
| Node-RED | Yes | team@nodered.org |
| webdriver | No | No |
| webhint | No | No |
| Projects | Security policy | Security reporting |
|---|---|---|
| AMP | Yes (Google) | https://www.google.com/about/appsecurity/ |
| Electron | Yes | security@electronjs.org |
| nvm | No | No |
| Fastify | Yes | https://hackerone.com/nodejs-ecosystem |
| Projects | Security policy | Security reporting |
|---|---|---|
| ESlint | Yes (on H1) | https://hackerone.com/eslint |
| libuv | No | No |
| Esprima | No | No |
| Lodash | Yes | Several: https://hackerone.com/nodejs-ecosystem, https://snyk.io/vulnerability-disclosure, security@lodash.com |
| Express | Yes | npm, lead maintainer email |
| Marko | No | https://gitter.im/mlrawlings |
| Globalize | No | No |
| messageformat | No | No |
| Grunt | No | No |
| Moment | No | No |
| HospitalRun | No | No |
| PEP | No | No |
| Interledger.js | No | Security label in issue tracker (some) |
| QUnit | No | No |
| JerryScript | No | No |