@inquirer/rawlist 5.3.5 appears healthy and suitable for dependency use: it has a long release history with 25 releases in the last 12 months, a stable non-prerelease version, no registry deprecation, an active non-archived repository, recent commits and pull-request merges, build provenance, licensing, type declarations, security tooling, and a security policy. The main concerns are concentrated recent commit activity, with one contributor responsible for about 89% of 28 commits, and the linked repository neither matching the package name nor mentioning it in its README, which creates some package-to-repository transparency risk. The small artifact and absence of packaged tests or a changelog are substantially mitigated by the repository's tests and GitHub Releases evidence.
88%
Total Score
90
100
94
90
100
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
@inquirer/core Version ^12.0.3 | — | — |
@inquirer/type Version 4.1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.