Package Health

@nrwl/js

The JS plugin for Nx contains executors and generators that provide the best experience for developing JavaScript and TypeScript projects.

Latest 19.8.4NPMNPM

36%

Total Score

unhealthy

Risky: @nrwl/js is replaced by @nx/js and has had no releases in the last 12 months.

Health Score Breakdown

Package scaffoldingdanger

The package includes a README, but it explicitly says @nrwl/js was renamed to @nx/js and will no longer be published. Repository tests and changelog evidence show the underlying project remains maintained, but they do not restore this package name's future support.

Release historydanger

The package has 1,072 releases overall but none in the last 12 months; its latest release was over a year ago, indicating that this package line is no longer being maintained for new consumers.

Repo package mentioncaution

The linked repository does not match the package name and does not mention it in the README, which weakens package-to-source traceability. The organization-owned Nx monorepo provides some context for the mismatch, but not for the package's stated replacement.

Workflow auditcaution

All 13 workflows were analyzed, actions are fully pinned, and no untrusted checkout or script-injection trigger was found. High-confidence template-injection and ad hoc package-install findings remain workflow hygiene concerns, but the audit provides no evidence of a severe release risk by itself.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Direct Dependencies

DependencyLast ReleaseScore
@nx/js
Version 19.8.4
—
—

Weekly Downloads

Info

Last Published
2 years ago
Created
4 years ago
Unpacked Size
0.1 MB

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform