Package Health

sharp

High performance Node.js image processing, the fastest module to resize JPEG, PNG, WebP, GIF, AVIF and TIFF images

Latest 0.35.5NPMNPM

92%

Total Score

healthy

Healthy release with frequent updates, active source maintenance, and strong publishing and workflow hygiene.

Are you affected? Scan for Free

Health Score Breakdown

Repo bus factorcaution

One contributor made about 83% of the 36 recent commits, so maintenance is concentrated. Three additional contributors were active, which partly offsets but does not remove the continuity risk.

Version stabilitycaution

This is not a prerelease, although 70% of recent versions were prereleases and the project remains below major version 1. That adds modest uncertainty but is not enough to outweigh the mature release history.

Vulnerabilities

TitleVersionsSeverity
CVE-2022-29256
sharp is vulnerable to Improper Neutralization of Special Elements used in a Command ('Command Injection') in versions 0.0.0 - 0.30.5.
0.0.0 - 0.30.5
Medium

Package versions

Maintainers

Direct Dependencies

DependencyLast ReleaseScore
semver
Version ^7.8.5
—
—
@img/colour
Version ^1.1.0
—
—
detect-libc
Version ^2.1.2
—
—

Weekly Downloads

Info

Last Published
13 days ago
Created
13 years ago
Unpacked Size
1 MB

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform