MUI virtualization library
90%
Total Score
healthy
Frequent releases, active organizational backing, and strong repository activity outweigh limited repository/package identification concerns.
The repository name does not match the package and its README does not mention the package, so package ownership is less transparent. The organization-owned monorepo context partly compensates for this mismatch.
Version 0.7.3 is not a stable major release, so API compatibility may still evolve; it is not marked as a prerelease, and only 30% of recent releases were prereleases.
All 20 workflows were analyzed, all use read-only permissions, and all 36 action references are pinned. High-confidence template-injection findings in CI, localization, and publishing workflows plus a secrets-inherit finding are workflow hygiene concerns, but no untrusted checkout or script-injection sink was reported.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
@mui/utils Version ^9.4.0 | — | — |
@babel/runtime Version ^7.29.7 || ^8.0.0 | — | — |
@base-ui/utils Version ^0.4.0 | — | — |
@mui/x-internals Version ^9.15.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.