Package Health

@expo/xcpretty

Parse and format xcodebuild logs

Latest 4.4.6NPMNPM

86%

Total Score

healthy

Healthy—frequent releases and a very active, well-backed repository outweigh limited workflow-audit concerns.

Health Score Breakdown

Maintainerscaution

The package is backed by an organization, but publish access includes outside-domain accounts such as ide (jameside.com), bycedric (bycedric.com), tsapeta (tsapeta.com), and philpl (kitten.sh), creating account-hygiene risk despite the clear expo.io domain.

Repo package mentioncaution

The linked repository name does not match the package and its README does not mention @expo/xcpretty. This is a caution because the package-to-repository connection is not explicit, although the organization-backed monorepo context partly explains the mismatch.

Workflow auditcaution

The audit covered only 30 of 54 workflows and found 18 high-confidence template-injection findings, plus high-confidence ad hoc package installs; low-confidence cache findings are hygiene only. No untrusted checkout or script-injection sink was found, but incomplete coverage warrants caution.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Direct Dependencies

DependencyLast ReleaseScore
chalk
Version ^4.1.0
—
—
js-yaml
Version ^4.1.0
—
—
@babel/code-frame
Version ^7.20.0
—
—

Weekly Downloads

Info

Last Published
9 days ago
Created
5 years ago
Unpacked Size
0.4 MB

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform