wait-on is a cross platform command line utility and Node.js API which will wait for files, ports, sockets, and http(s) resources to become available
84%
Total Score
healthy
Healthy: sustained releases, active repository work, and verified publishing outweigh the concentrated contributor base.
Only one account has registry publish access. The linked repository is individually owned rather than organization-backed, so there is limited publishing redundancy.
Recent work is concentrated: one contributor made 25 of 30 commits, or about 83%, although four other contributors were active during the same period. This leaves a moderate continuity risk rather than indicating abandonment.
The linked repository has no security policy, leaving the process for reporting and handling vulnerabilities undocumented.
All four workflows were analyzed with no untrusted checkout or script-injection findings; three use read-only permissions. One high-confidence low-severity finding reports a release workflow installing a package outside a lockfile, and two of 11 action references are unpinned.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
joi Version ^18.2.9 | — | — |
rxjs Version ^7.8.2 | — | — |
axios Version ^1.20.0 | — | — |
lodash Version ^4.18.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.