Package Health

svix

Svix webhooks API client and webhook verification library

Latest 2.7.0com.svixMavenMaven

88%

Total Score

healthy

Active maintenance, signed publishing, and strong project backing outweigh workflow hygiene gaps.

Are you affected? Scan for Free

Health Score Breakdown

Workflow auditcaution

The audit found no untrusted checkouts or script injection, but 52 of 98 action references are unpinned, high-confidence secrets-inherit findings are present, and only 30 of 37 workflows were analyzed. These are workflow hygiene concerns rather than evidence that the release is unfit.

Vulnerabilities

TitleVersionsSeverity
AIKIDO-2025-10294 Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.
svix is vulnerable to Improper Input Validation in versions 0.61.0 - 1.64.1.
0.61.0 - 1.64.1
Low

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
com.fasterxml.jackson.core:jackson-core
Version 2.21.4
—
—
com.fasterxml.jackson.datatype:jackson-datatype-jdk8
Version 2.21.4
—
—
com.fasterxml.jackson.datatype:jackson-datatype-jsr310
Version 2.21.4
—
—
com.fasterxml.jackson.core:jackson-annotations
Version 2.21
—
—
com.fasterxml.jackson.core:jackson-databind
Version 2.21.4
—
—

Weekly Downloads

Info

Last Published
5 days ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform