Package Health

parse-gitignore

Parse a .gitignore or .npmignore file into an array of patterns.

Latest 2.0.0NPMNPM

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

93

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Attestations
Attestations
Measures the presence and validity of package attestations and signatures

50

Health Score Breakdown

Build provenancecaution

No build provenance attestation or trusted-publisher configuration is present, limiting publication transparency, though this is a modest concern for a small dependency-free package.

Maintainerscaution

One registry account has publish access. That is a thin publishing base for continuity, though the linked repository identifies the same individual as its owner.

Release historycaution

The package has 12 releases over more than 11 years, but none in the last four years; the long release gap raises maintenance and abandonment concerns.

Repo commit activitycaution

There were zero commits and zero active maintainers in the last three months, indicating that maintenance is currently inactive.

Repo issue activitycaution

There were no new or closed issues or pull requests in the last month, with five open issues remaining; this provides little evidence of active upkeep.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
4 years ago
Created
11 years ago
Unpacked Size
0.1 MB

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform