Package Health

vite-plugin-svgr

Vite plugin to transform SVGs into React components

Latest 5.2.0NPMNPM

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

95

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

63

Attestations
Attestations
Measures the presence and validity of package attestations and signatures

50

Health Score Breakdown

Build provenancecaution

No build attestation, trusted publisher, or staged publishing evidence is present, leaving the relationship between source and artifact less transparent.

Lifecycle scriptscaution

A prepare script runs during installation, adding some execution surface, though this is common for packages that build or prepare artifacts.

Maintainerscaution

Only one registry publishing account is listed, which creates a thin publishing base; the linked repository is also owned by an individual, so there is no organizational backing shown to offset that concern.

Project backingcaution

The repository is owned by an individual account rather than an organization, so the project does not show institutional backing to compensate for its thin maintainer base.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months, a meaningful maintenance warning; the recent release and same-day push partly offset, but do not erase, it.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Direct Dependencies

DependencyLast ReleaseScore
@svgr/core
Version ^8.1.0
—
—
@svgr/plugin-jsx
Version ^8.1.0
—
—
@rollup/pluginutils
Version ^5.3.0
—
—

Weekly Downloads

Info

Last Published
6 months ago
Created
5 years ago
Unpacked Size
0.1 MB

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform