Stringify an object/array like JSON.stringify just without all the double-quotes
82%
Total Score
63
100
94
88
50
No build attestation or trusted-publisher provenance is reported, limiting release traceability, although the package is a small direct artifact.
One registry publishing account is listed, so publishing continuity depends on a narrow account base; the linked repository is also user-owned rather than organization-owned.
The repository is owned by an individual user, so there is no organization backing to offset the concentrated maintainer and contributor base.
One contributor made all two recent commits, leaving maintenance highly concentrated and increasing continuity risk.
No build tool or security scanning tool is reported, which is a modest transparency and automation gap for the repository.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
is-obj Version ^3.0.0 | — | — |
is-regexp Version ^3.1.0 | — | — |
is-identifier Version ^1.0.1 | — | — |
quote-js-string Version ^0.1.0 | — | — |
get-own-enumerable-keys Version ^1.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.