Package Health

@google-cloud/projectify

A simple utility for replacing the projectid token in objects.

Latest 6.1.0NPMNPM

88%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

95

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Attestations
Attestations
Measures the presence and validity of package attestations and signatures

50

Health Score Breakdown

Build provenancecaution

No build attestation or trusted-publisher provenance is present, reducing release transparency despite the package's otherwise strong maintenance evidence.

Dangerous workflowscaution

One pull_request_target workflow is present, creating some privileged workflow exposure, but no untrusted checkouts or script-injection patterns were detected across the analyzed workflows.

Lifecycle scriptscaution

A prepare install-time lifecycle script is present, which adds build or installation behavior that should be understood before adoption, although this signal alone does not show harmful behavior.

Repo package mentioncaution

The linked repository is a monorepo whose name differs from the package and whose README does not mention this package. A name mismatch is normal for a monorepo, but the lack of a README reference leaves some uncertainty about the exact package linkage.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
25 days ago
Created
8 years ago
Unpacked Size
0.1 MB

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform