{"id":3536148,"name":"github.com/bitly/oauth2_proxy","ecosystem":"go","description":"","homepage":"https://github.com/bitly/oauth2_proxy","licenses":"MIT","normalized_licenses":["MIT"],"repository_url":"https://github.com/bitly/oauth2_proxy","keywords_array":[],"namespace":"github.com/bitly","versions_count":2,"first_release_published_at":"2015-03-23T13:19:24.000Z","latest_release_published_at":"2015-07-03T03:29:25.000Z","latest_release_number":"v2.0.1+incompatible","last_synced_at":"2026-05-31T10:28:48.183Z","created_at":"2022-04-10T23:51:07.121Z","updated_at":"2026-05-31T10:28:48.183Z","registry_url":"https://pkg.go.dev/github.com/bitly/oauth2_proxy","install_command":"go get github.com/bitly/oauth2_proxy","documentation_url":"https://pkg.go.dev/github.com/bitly/oauth2_proxy#section-documentation","metadata":{},"repo_metadata":{"id":5987112,"uuid":"7209439","full_name":"bitly/oauth2_proxy","owner":"bitly","description":"A reverse proxy that provides authentication with Google, Github or other provider","archived":true,"fork":false,"pushed_at":"2019-02-04T22:22:35.000Z","size":505,"stargazers_count":5096,"open_issues_count":243,"forks_count":1215,"subscribers_count":148,"default_branch":"master","last_synced_at":"2025-08-14T03:41:20.975Z","etag":null,"topics":[],"latest_commit_sha":null,"homepage":"","language":"Go","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"mit","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/bitly.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null}},"created_at":"2012-12-17T18:01:53.000Z","updated_at":"2025-08-11T23:05:27.000Z","dependencies_parsed_at":"2022-08-02T15:15:42.085Z","dependency_job_id":null,"html_url":"https://github.com/bitly/oauth2_proxy","commit_stats":null,"previous_names":["bitly/google_auth_proxy"],"tags_count":8,"template":false,"template_full_name":null,"purl":"pkg:github/bitly/oauth2_proxy","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/bitly","download_url":"https://codeload.github.com/bitly/oauth2_proxy/tar.gz/refs/heads/master","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/sbom","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":270407963,"owners_count":24578345,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","status":"online","status_checked_at":"2025-08-14T02:00:10.309Z","response_time":75,"last_error":null,"robots_txt_status":"success","robots_txt_updated_at":"2025-07-24T06:49:26.215Z","robots_txt_url":"https://github.com/robots.txt","online":true,"can_crawl_api":true,"host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"},"owner_record":{"login":"bitly","name":"Bitly","uuid":"251133","kind":"organization","description":"","email":null,"website":"https://bitly.com","location":"New York City, NY, USA","twitter":null,"company":null,"icon_url":"https://avatars.githubusercontent.com/u/251133?v=4","repositories_count":35,"last_synced_at":"2024-03-25T23:28:30.410Z","metadata":{"has_sponsors_listing":false},"html_url":"https://github.com/bitly","funding_links":[],"total_stars":14903,"followers":72,"following":0,"created_at":"2022-11-02T21:30:43.353Z","updated_at":"2024-03-25T23:28:31.005Z","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/bitly","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/bitly/repositories"},"tags":[{"name":"v2.2","sha":"b90a23473f10c7bb2d84acd033f7d7ed81b95dd3","kind":"commit","published_at":"2017-04-24T16:22:11.000Z","download_url":"https://codeload.github.com/bitly/oauth2_proxy/tar.gz/v2.2","html_url":"https://github.com/bitly/oauth2_proxy/releases/tag/v2.2","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/bitly/oauth2_proxy@v2.2","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v2.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v2.2/manifests"},{"name":"v2.1","sha":"a66f7c50eac53b23d10657b64cc133364d452aea","kind":"commit","published_at":"2016-06-23T14:11:59.000Z","download_url":"https://codeload.github.com/bitly/oauth2_proxy/tar.gz/v2.1","html_url":"https://github.com/bitly/oauth2_proxy/releases/tag/v2.1","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/bitly/oauth2_proxy@v2.1","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v2.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v2.1/manifests"},{"name":"v2.0.1","sha":"3a792555f1405b8dec3c5ded6a93d0000c242201","kind":"commit","published_at":"2015-07-03T03:29:25.000Z","download_url":"https://codeload.github.com/bitly/oauth2_proxy/tar.gz/v2.0.1","html_url":"https://github.com/bitly/oauth2_proxy/releases/tag/v2.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/bitly/oauth2_proxy@v2.0.1","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v2.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v2.0.1/manifests"},{"name":"v2.0","sha":"66a0484721a5804435a108edf8763bea7ddfbf3e","kind":"commit","published_at":"2015-06-12T17:12:20.000Z","download_url":"https://codeload.github.com/bitly/oauth2_proxy/tar.gz/v2.0","html_url":"https://github.com/bitly/oauth2_proxy/releases/tag/v2.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/bitly/oauth2_proxy@v2.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v2.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v2.0/manifests"},{"name":"v1.1.1","sha":"fd74eae9c3893f13499dd30c498ec6c409fa3c30","kind":"commit","published_at":"2015-03-23T13:19:24.000Z","download_url":"https://codeload.github.com/bitly/oauth2_proxy/tar.gz/v1.1.1","html_url":"https://github.com/bitly/oauth2_proxy/releases/tag/v1.1.1","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/bitly/oauth2_proxy@v1.1.1","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v1.1.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v1.1.1/manifests"},{"name":"v1.1","sha":"736ec2aa9f744e4eabfb9505189dfc84f77e35ba","kind":"commit","published_at":"2015-03-20T03:03:16.000Z","download_url":"https://codeload.github.com/bitly/oauth2_proxy/tar.gz/v1.1","html_url":"https://github.com/bitly/oauth2_proxy/releases/tag/v1.1","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/bitly/oauth2_proxy@v1.1","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v1.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v1.1/manifests"},{"name":"v0.1","sha":"590e0b527ceefd965c8d4d43cf0d7f64ca1c2537","kind":"tag","published_at":"2014-11-10T14:26:02.000Z","download_url":"https://codeload.github.com/bitly/oauth2_proxy/tar.gz/v0.1","html_url":"https://github.com/bitly/oauth2_proxy/releases/tag/v0.1","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/bitly/oauth2_proxy@v0.1","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v0.1/manifests"},{"name":"v1.0","sha":"d552effc1e23ed086d6a3fe40ea746fb8e2e212e","kind":"commit","published_at":"2014-11-10T13:51:33.000Z","download_url":"https://codeload.github.com/bitly/oauth2_proxy/tar.gz/v1.0","html_url":"https://github.com/bitly/oauth2_proxy/releases/tag/v1.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/bitly/oauth2_proxy@v1.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/tags/v1.0/manifests"}]},"repo_metadata_updated_at":"2025-08-14T11:13:50.917Z","dependent_packages_count":0,"downloads":null,"downloads_period":null,"dependent_repos_count":2,"rankings":{"downloads":null,"dependent_repos_count":3.5203901335783447,"dependent_packages_count":9.566349969205294,"stargazers_count":0.9386803549558627,"forks_count":0.7259451169337048,"docker_downloads_count":null,"average":3.6878413936683017},"purl":"pkg:golang/github.com/bitly/oauth2_proxy","advisories":[{"uuid":"MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXJybTgtMzJnNC13OG0z","url":"https://github.com/advisories/GHSA-rrm8-32g4-w8m3","title":"Cross-site Request Forgery (CSRF)","description":"CSRF in Bitly oauth2_proxy 2.1 during authentication flow","origin":"UNSPECIFIED","severity":"HIGH","published_at":"2021-12-20T18:04:46.000Z","withdrawn_at":null,"classification":"GENERAL","cvss_score":8.8,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","references":["https://nvd.nist.gov/vuln/detail/CVE-2017-1000069","https://github.com/bitly/oauth2_proxy/pull/360","https://github.com/bitly/oauth2_proxy/commit/55085d9697962668fd4e43e8e4644144fe83cd93","https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-1000069","https://github.com/advisories/GHSA-rrm8-32g4-w8m3"],"source_kind":"github","identifiers":["GHSA-rrm8-32g4-w8m3","CVE-2017-1000069"],"repository_url":"https://github.com/bitly/oauth2_proxy","blast_radius":0.0,"created_at":"2022-12-21T16:13:04.216Z","updated_at":"2026-05-28T19:11:24.442Z","epss_percentage":0.00091,"epss_percentile":0.25514,"api_url":"https://advisories.ecosyste.ms/api/v1/advisories/MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXJybTgtMzJnNC13OG0z","html_url":"https://advisories.ecosyste.ms/advisories/MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXJybTgtMzJnNC13OG0z","packages":[{"ecosystem":"go","package_name":"github.com/bitly/oauth2_proxy","versions":[{"first_patched_version":"2.2.0","vulnerable_version_range":"\u003c 2.2.0"}],"purl":"pkg:go/github.com%2Fbitly%2Foauth2_proxy"}],"related_packages_url":"https://advisories.ecosyste.ms/api/v1/advisories/MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXJybTgtMzJnNC13OG0z/related_packages","related_advisories":[]},{"uuid":"MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWptMzQteG04bS13OTU4","url":"https://github.com/advisories/GHSA-jm34-xm8m-w958","title":"Open Redirect in oauth2_proxy","description":"The Bitly oauth2_proxy in version 2.1 and earlier was affected by an open redirect vulnerability during the start and termination of the 2-legged OAuth flow. This issue was caused by improper input validation and a violation of RFC-6819","origin":"UNSPECIFIED","severity":"MODERATE","published_at":"2021-12-20T18:04:40.000Z","withdrawn_at":null,"classification":"GENERAL","cvss_score":6.1,"cvss_vector":"CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","references":["https://nvd.nist.gov/vuln/detail/CVE-2017-1000070","https://github.com/bitly/oauth2_proxy/issues/228","https://github.com/bitly/oauth2_proxy/pull/359","https://github.com/bitly/oauth2_proxy/commit/289a6ccf463a425c7606178c510fc5eeb9c8b050","https://tools.ietf.org/html/rfc6819#section-5.2.3.5","https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-1000070","https://github.com/advisories/GHSA-jm34-xm8m-w958"],"source_kind":"github","identifiers":["GHSA-jm34-xm8m-w958","CVE-2017-1000070"],"repository_url":"https://github.com/bitly/oauth2_proxy","blast_radius":0.0,"created_at":"2022-12-21T16:13:01.920Z","updated_at":"2026-04-05T20:07:39.881Z","epss_percentage":0.00178,"epss_percentile":0.39075,"api_url":"https://advisories.ecosyste.ms/api/v1/advisories/MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWptMzQteG04bS13OTU4","html_url":"https://advisories.ecosyste.ms/advisories/MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWptMzQteG04bS13OTU4","packages":[{"ecosystem":"go","package_name":"github.com/bitly/oauth2_proxy","versions":[{"first_patched_version":"2.2.0","vulnerable_version_range":"\u003c 2.2.0"}],"purl":"pkg:go/github.com%2Fbitly%2Foauth2_proxy"}],"related_packages_url":"https://advisories.ecosyste.ms/api/v1/advisories/MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWptMzQteG04bS13OTU4/related_packages","related_advisories":[]}],"docker_usage_url":"https://docker.ecosyste.ms/usage/go/github.com/bitly/oauth2_proxy","docker_dependents_count":null,"docker_downloads_count":null,"usage_url":"https://repos.ecosyste.ms/usage/go/github.com/bitly/oauth2_proxy","dependent_repositories_url":"https://repos.ecosyste.ms/api/v1/usage/go/github.com/bitly/oauth2_proxy/dependencies","status":null,"funding_links":[],"critical":null,"issue_metadata":{"last_synced_at":"2024-09-25T22:01:13.460Z","issues_count":46,"pull_requests_count":54,"avg_time_to_close_issue":6732258.9375,"avg_time_to_close_pull_request":18992069.85185185,"issues_closed_count":16,"pull_requests_closed_count":27,"pull_request_authors_count":46,"issue_authors_count":45,"avg_comments_per_issue":4.173913043478261,"avg_comments_per_pull_request":5.592592592592593,"merged_pull_requests_count":7,"bot_issues_count":0,"bot_pull_requests_count":0,"past_year_issues_count":0,"past_year_pull_requests_count":0,"past_year_avg_time_to_close_issue":null,"past_year_avg_time_to_close_pull_request":null,"past_year_issues_closed_count":0,"past_year_pull_requests_closed_count":0,"past_year_pull_request_authors_count":0,"past_year_issue_authors_count":0,"past_year_avg_comments_per_issue":null,"past_year_avg_comments_per_pull_request":null,"past_year_bot_issues_count":0,"past_year_bot_pull_requests_count":0,"past_year_merged_pull_requests_count":0,"issues_url":"https://issues.ecosyste.ms/api/v1/hosts/GitHub/repositories/bitly%2Foauth2_proxy/issues","maintainers":[{"login":"jehiah","count":1,"url":"https://issues.ecosyste.ms/api/v1/hosts/GitHub/authors/jehiah"}],"active_maintainers":[]},"versions_url":"https://packages.ecosyste.ms/api/v1/registries/proxy.golang.org/packages/github.com%2Fbitly%2Foauth2_proxy/versions","version_numbers_url":"https://packages.ecosyste.ms/api/v1/registries/proxy.golang.org/packages/github.com%2Fbitly%2Foauth2_proxy/version_numbers","latest_version_url":"https://packages.ecosyste.ms/api/v1/registries/proxy.golang.org/packages/github.com%2Fbitly%2Foauth2_proxy/latest_version","dependent_packages_url":"https://packages.ecosyste.ms/api/v1/registries/proxy.golang.org/packages/github.com%2Fbitly%2Foauth2_proxy/dependent_packages","related_packages_url":"https://packages.ecosyste.ms/api/v1/registries/proxy.golang.org/packages/github.com%2Fbitly%2Foauth2_proxy/related_packages","codemeta_url":"https://packages.ecosyste.ms/api/v1/registries/proxy.golang.org/packages/github.com%2Fbitly%2Foauth2_proxy/codemeta","maintainers":[]}