79%
Total Score
healthy
Frequent releases and active organization-backed maintenance make this a strong dependency.
The package is backed by a WorkOS domain, but hadihallak (gmail.com) and chancestrickland (chance.dev) are outside-domain publishing accounts, creating account-hygiene caution.
The repository name does not match the package and its README does not mention this package, so ownership of the published subpackage is less transparent even though the organization-backed monorepo context is plausible.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented.
All eight analyzed action references are unpinned, weakening workflow reproducibility; however, all workflows were audited, no untrusted checkout or script injection was found, and no workflow has top-level write permissions.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
@radix-ui/react-visually-hidden Version 1.2.12 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.