Package Health

@graphql-tools/json-file-loader

A set of utils for faster development of GraphQL tools

Latest 8.0.36NPMNPM

88%

Total Score

healthy

Healthy: frequent releases, active contributors, and a maintained source repository outweigh minor workflow and package-linkage cautions.

Health Score Breakdown

Maintainerscaution

Five publishing accounts are listed, with the primary domain tied to the project organization. The Gmail-based accounts urigo, ardatan, and enisdenjo are account-hygiene cautions, but they do not by themselves show limited maintenance capacity.

Project backingcaution

The package is published under the @graphql-tools namespace, but the linked repository owner is recorded as an individual rather than an organization. This provides less explicit organizational backing than an organization-owned repository.

Repo package mentioncaution

The repository name does not match this package and its README does not mention it. That is a caution because the package could be difficult to verify, although the repository is clearly structured as a multi-package GraphQL Tools project.

Workflow auditcaution

All four workflows were analyzed with no audit findings, untrusted checkouts, or script injections. Eight of 22 action references are unpinned and two workflows grant top-level write access, creating minor workflow-hygiene concerns.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Direct Dependencies

DependencyLast ReleaseScore
tslib
Version ^2.4.0
—
—
globby
Version ^11.0.3
—
—
unixify
Version ^1.0.0
—
—
@graphql-tools/utils
Version ^12.0.3
—
—

Weekly Downloads

Info

Last Published
11 days ago
Created
6 years ago
Unpacked Size
0.1 MB

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform