Package Health

@module-federation/data-prefetch

Module Federation Data Prefetch

Latest 2.3.3NPMNPM

57%

Total Score

caution

Usable with caveats: the package README directs users to a replacement despite active project maintenance.

Health Score Breakdown

Package scaffoldingcaution

The package includes type declarations, tests and a changelog in the source project, but its 133-character README explicitly says the package is deprecated and recommends a data solution. That guidance materially lowers confidence for new dependencies.

Repo package mentioncaution

The linked repository name does not match the package and its README does not mention the package. A name mismatch can be normal for a monorepo, but the lack of an explicit package mention leaves ownership of this artifact less transparent.

Security policycaution

The linked repository has no security policy. This is a transparency and vulnerability-reporting gap, although active development and automated security scanning provide some compensation.

Workflow auditcaution

All 26 workflows were analyzed and all 113 action references are pinned, with no untrusted checkout or script-injection counts. However, high-confidence template-injection findings and repeated high-confidence secrets-inherit findings are meaningful workflow hygiene concerns; the low-confidence cache finding and low-severity ad hoc package install add little weight.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Direct Dependencies

DependencyLast ReleaseScore
@module-federation/sdk
Version 2.3.3
—
—
@module-federation/runtime
Version 2.3.3
—
—

Weekly Downloads

Info

Last Published
5 months ago
Created
2 years ago
Unpacked Size
0.2 MB

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform