Package Health

@next/third-parties

`@next/third-parties` is a collection of components and utilities that can be used to efficiently load third-party libraries into your Next.js application.

Latest 16.4.0NPMNPM

82%

Total Score

healthy

Active, well-backed release with strong provenance, but package ownership is indirect and workflow hygiene needs attention.

Health Score Breakdown

Repo package mentioncaution

The linked repository name does not match the package and its README does not mention @next/third-parties; although a monorepo mismatch can be normal, this weakens direct ownership transparency.

Version stabilitycaution

Version 16.4.0 is a stable major release and not a prerelease, although 80% of recent releases being prereleases indicates an experimental development stream.

Workflow auditcaution

All 29 workflows were analyzed with no untrusted checkouts or script injections, but high-confidence template-injection findings and repeated secrets-inherit findings indicate workflow hygiene concerns; the single unpinned action is a minor additional gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Direct Dependencies

DependencyLast ReleaseScore
third-party-capital
Version 1.0.20
—
—

Weekly Downloads

Info

Last Published
5 days ago
Created
2 years ago
Unpacked Size
0.1 MB

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform