npm package
Home@hapi/bourne
@hapi/bourne is a drop-in replacement for JSON. parse() that provides protection against prototype poisoning. It is particularly useful in applications where secure JSON parsing is critical, and it integrates well with the hapi web framework.
- lurq health score
- 69/100
- Confidence
- proven
- Weekly downloads
- 5,416,682
- Latest version
- 4.0.1
- Last release
- Jul 2, 2026
- License
- BSD-3-Clause
Should you depend on @hapi/bourne?
lurq's verdict: low
- No known advisories
Check this from your coding agent
This page is a daily snapshot. lurq's verify tool checks @hapi/bourne at the exact version your agent is about to install, and compat checks it against the rest of your stack. One command connects Claude Code, Cursor, VS Code and other agents:
npx lurqrun
Free to start. Quickstart
Other framework packages lurq scores
- @angular-devkit/schematics94/100 · proven
- @mui/types94/100 · proven
- @mui/styled-engine94/100 · proven
- fastify94/100 · proven
- @nestjs/common93/100 · proven
Scored from public signals (npm registry, GitHub, deps.dev and advisory databases). Data as of Sep 1, 2026; this page refreshes every 24 hours. Source repository.