Package Health

@jimp/core

Latest 1.6.1NPMNPM

64%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Attestations
Attestations
Measures the presence and validity of package attestations and signatures

50

Health Score Breakdown

Repo commit activitydanger

There were no commits and no active maintainers in the past three months, a significant warning about current maintenance capacity.

Build provenancecaution

No build attestation or trusted-publisher provenance is available, reducing release transparency, although this is not by itself evidence of an unsafe release.

Release historycaution

The package is mature, with 241 releases over more than eight years, but only one release in the past 12 months indicates a substantially slower recent cadence.

Repo issue activitycaution

Recent activity is limited: one new issue, no closed issues, two new pull requests, and no merged pull requests in the past month, suggesting slow issue resolution.

Repo toolingcaution

The repository uses TypeScript, Turbo, and npm scripts, but reports no security-scanning tools, leaving a notable transparency and maintenance-control gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Direct Dependencies

DependencyLast ReleaseScore
mime
Version 3
—
—
file-type
Version ^21.3.3
—
—
@jimp/types
Version 1.6.1
—
—
@jimp/utils
Version 1.6.1
—
—
await-to-js
Version ^3.0.0
—
—

Weekly Downloads

Info

Last Published
6 months ago
Created
8 years ago
Unpacked Size
0.4 MB

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform