Treat React JSX elements as value types and hoist them to the highest scope
84%
Total Score
healthy
Healthy release, supported by active Babel maintenance; workflow pinning and package-to-repository identification need attention.
The repository name does not match this package and its README does not mention the package, creating some uncertainty about package-to-source identification. The organization-owned monorepo context partly explains the name mismatch but does not resolve the missing README mention.
The audit analyzed all 13 workflows with no untrusted checkouts or script injections, but 119 of 120 action references are unpinned. It also identified high-confidence template-injection findings and a trusted-publishing finding, so workflow hygiene is a caution despite mostly read-only permissions.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
@babel/helper-plugin-utils Version ^8.0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.