graphql-yoga

v1.18.3

Fully-featured GraphQL Server with focus on easy setup, performance & great developer experience

MIT
Latest version published about 1 year ago
    npm install graphql-yoga
  

Package Health Score

60 / 100
  • Popularity
    Popular
  • Maintenance
    Inactive
  • Security
    Security review needed
  • Community
    Sustainable

Popularity

Popular
Weekly Downloads (27,520)
Dependents
163
GitHub Stars
6.1K
Forks
386
Contributors
58

The npm package graphql-yoga receives a total of 27,520 downloads a week. As such, we scored graphql-yoga popularity level to be Popular.

Based on project statistics from the GitHub repository for the npm package graphql-yoga, we found that it has been starred 6,101 times, and that 163 other projects on the ecosystem are dependent on it.

Downloads are calculated as moving averages for a period of the last 12 months, excluding weekends and known missing data points.

Security

Security review needed

Security and license risk for recent versions


Direct Vulnerabilities

1.17.4
1.18.0
1.18.1
1.18.2
1.18.3
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L

Indirect Vulnerabilities

1.17.4
1.18.0
1.18.1
1.18.2
1.18.3

License Risks

1.17.4
1.18.0
1.18.1
1.18.2
1.18.3
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L

Security Policy
No
All security vulnerabilities belong to production dependencies of direct and indirect packages.

Snyk detected that the latest version of graphql-yoga has a security vulnerability.

We highly advise you to review these security issues.

You can connect your project's repository to Snyk to stay up to date on security alerts and receive automatic fix pull requests.

We found a way for you to contribute to the project! Looks like graphql-yoga is missing a security policy.

    # Install the Snyk CLI and test your project
npm i snyk && snyk test graphql-yoga
Fix it in your project with Snyk!

Maintenance

Inactive
Commit Frequency
Open Issues
52
Merged PR
200
Open PR
24
Last Commit
7 months ago

Further analysis of the maintenance status of graphql-yoga based on released npm versions cadence, the repository activity, and other data points determined that its maintenance is Inactive.

An important project maintenance signal to consider for graphql-yoga is that it hasn't seen any new versions released to npm in the past 12 months, and could be considered as a discontinued project, or that which receives low attention from its maintainers.

As a healthy sign for on-going project maintenance, we found that the GitHub repository had at least 1 pull request or issue interacted with by the community.

Community

Sustainable
Readme.md
Yes
Contributing.md
No
Code of Conduct
No
Contributors
58
Funding
No
License
MIT

With more than 10 contributors for the graphql-yoga repository, this is possibly a sign for a growing and inviting community.

We found a way for you to contribute to the project! Looks like graphql-yoga is missing a Code of Conduct.

Package

Node.js Compatibility
not defined

Age
3 years
Dependencies
22 Direct / 125 Total
Versions
6
Install Size
109 kB
Dist-tags
2
# of Files
18
Maintainers
2
TS Typings
No

We detected a total of 125 direct & transitive dependencies for graphql-yoga. See the full dependency tree of graphql-yoga

graphql-yoga has more than a single and default latest tag published for the npm package. This means, there may be other tags available for this package, such as next to indicate future releases, or stable to indicate stable releases.