npm-2

v2.15.0

a package manager for JavaScript

Artistic-2.0
Latest version published over 4 years ago
    npm install npm-2
  

Package Health Score

27 / 100
  • Popularity
    Small
  • Maintenance
    Inactive
  • Security
    Security issues found
  • Community
    Sustainable

Popularity

Small
Weekly Downloads (14)
Dependents
0
GitHub Stars
17.21K
Forks
3.2K
Contributors
440

The npm package npm-2 receives a total of 14 downloads a week. As such, we scored npm-2 popularity level to be Small.

Based on project statistics from the GitHub repository for the npm package npm-2, we found that it has been starred 17,213 times, and that 0 other projects on the ecosystem are dependent on it.

Downloads are calculated as moving averages for a period of the last 12 months, excluding weekends and known missing data points.

Security

Security issues found

Security and license risk for recent versions


Direct Vulnerabilities

2.14.15
2.14.16
2.14.18
2.15.0
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L

Indirect Vulnerabilities

2.14.15
2.14.16
2.14.18
2.15.0

License Risks

2.14.15
2.14.16
2.14.18
2.15.0

Security Policy
No
All security vulnerabilities belong to production dependencies of direct and indirect packages.

Snyk detected that the latest version of npm-2 has a security vulnerability.

We highly advise you to review these security issues.

You can connect your project's repository to Snyk to stay up to date on security alerts and receive automatic fix pull requests.

We found a way for you to contribute to the project! Looks like npm-2 is missing a security policy.

    # Install the Snyk CLI and test your project
npm i snyk && snyk test npm-2
Fix it in your project with Snyk!

Maintenance

Inactive
Commit Frequency
Open Issues
2.17K
Merged PR
439
Open PR
0
Last Commit
2 months ago

Further analysis of the maintenance status of npm-2 based on released npm versions cadence, the repository activity, and other data points determined that its maintenance is Inactive.

An important project maintenance signal to consider for npm-2 is that it hasn't seen any new versions released to npm in the past 12 months, and could be considered as a discontinued project, or that which receives low attention from its maintainers.

In the past month we didn't find any pull request activity or change in issues status has been detected for the GitHub repository.

Community

Sustainable
Readme.md
No
Contributing.md
No
Code of Conduct
No
Contributors
440
Funding
No
License
Artistic-2.0

A good and healthy external contribution signal for npm-2 project, which invites more than one hundred open source maintainers to collaborate on the repository.

We found a way for you to contribute to the project! Looks like npm-2 is missing a Code of Conduct.

We noticed that this project uses a license which requires less permissive conditions such as disclosing the source code, stating changes or redistributing the source under the same license. It is advised to further consult the license terms before use.

Package

Node.js Compatibility
not defined

Age
5 years
Dependencies
71 Direct / 261 Total
Versions
4
Install Size
0 B
Dist-tags
1
# of Files
0
Maintainers
1
TS Typings
Yes

We detected a total of 261 direct & transitive dependencies for npm-2. See the full dependency tree of npm-2

npm-2 has more than a single and default latest tag published for the npm package. This means, there may be other tags available for this package, such as next to indicate future releases, or stable to indicate stable releases.