Infrastructure & DevOps
@newrelic/security-agent
Source: newrelic/csec-node-agent · instrumentation · IAST · RASP
Last updated 2026-06-16 · benchmark measured 2026-09-11 — deterministic & reproducible
New Relic Security Agent for Node.js
Are you the maker of @newrelic/security-agent? Claim this listing. It is free, takes a meta tag, a DNS record or GitHub admin rights, and never changes the score.
Launched something? Add your product, free.
To cite this score: legit.show/s/npm-newrelic-security-agent/2026-09-11. That address never changes; this page moves with every re-measure.
Legit.Show scored @newrelic/security-agent 66/100 on 2026-09-11, measured across 4 of 7 frames from its public surface. legit.show/s/npm-newrelic-security-agent/2026-09-11
Is @newrelic/security-agent production-ready?
Legit.Show scores @newrelic/security-agent 66 out of 100 — the simple average of its 4 measured frames. Legit.Show ran its deterministic 7-Frame production-readiness benchmark on @newrelic/security-agent (github assessment), measured from the public surface with no LLM in the scoring path. Its strongest frame is Security; its weakest is Discoverability. 4 of the seven frames returned a score; Performance, Accessibility and Privacy were not measurable on this service and are recorded as null — not as zero. Maintenance is an additional frame from the open-source teardown, scored separately from the seven. Every frame it averages is published with its evidence on the Legit.Show listing.
The 7 Frames
- Performance — not measurable on this service (null — not scored as 0)
- Accessibility — not measurable on this service (null — not scored as 0)
- Security — 90/100How this compares across the catalogue: The Web Security Baseline
- Privacy — not measurable on this service (null — not scored as 0)
- Reliability — 65/100
- Standards — 75/100
- Discoverability — 35/100
Open-source teardown
Scored separately — not one of the seven.
- Maintenance — 80/100
What we measured
- No Content-Security-Policy and no HSTS.
- No privacy policy found.
- Sets cookies / loads scripts with no consent prompt.
Who built it
product account @newrelic
Sources and updates
- Description
- Taken from github.com's own website on 2026-06-16.
- Code
- github.com/newrelic/csec-node-agent.
- Benchmark
- Measured by Legit.Show from the live site, the way any visitor sees it — with no access to its code or accounts. Same method for every product, and no AI decides the score. Last checked 2026-09-11.
Put together from public information, without @newrelic/security-agent's involvement. If anything here is wrong, tell us and a person will check it.
Visit @newrelic/security-agent → · Alternatives to @newrelic/security-agent → · How this was measured →