Stub TypeScript definitions entry for mkdirp, which provides its own types definitions
15%
Total Score
50
60
100
50
The entire package is marked deprecated, with npm explicitly stating that mkdirp now provides its own type definitions. This is a severe adoption risk for a new dependency.
No build attestation or trusted publisher information is available. This limits provenance verification, though the package's tiny, inspectable artifact reduces the practical significance of the gap.
The package declares one runtime dependency, mkdirp. That dependency is not inherently excessive, but it adds no compensating value to a package whose type definitions are no longer needed.
The package has 18 releases since 2016, but its latest release was over three years ago and it had no releases in the last 12 months. This is consistent with a retired package and reinforces the deprecation status.
The package contains no type declarations despite being an @types package. The README explains that this is intentional because mkdirp now provides its own definitions, but it confirms that this release offers no typing value.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
mkdirp Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.