stockfish

v10.0.2

The world's strongest chess engine in pure JavaScript.

GPL-3.0
Latest version published about 1 year ago
    npm install stockfish
  

Package Health Score

27 / 100
  • Popularity
    Limited
  • Maintenance
    Inactive
  • Security
    Security issues found
  • Community
    Sustainable

Popularity

Limited
Weekly Downloads (63)
Dependents
7
GitHub Stars
267
Forks
55
Contributors
50

The npm package stockfish receives a total of 63 downloads a week. As such, we scored stockfish popularity level to be Limited.

Based on project statistics from the GitHub repository for the npm package stockfish, we found that it has been starred 267 times, and that 7 other projects on the ecosystem are dependent on it.

Downloads are calculated as moving averages for a period of the last 12 months, excluding weekends and known missing data points.

Security

Security issues found

Security and license risk for recent versions


Direct Vulnerabilities

6.0.5
8.0.0
10.0.0
10.0.1
10.0.2
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L

Indirect Vulnerabilities

6.0.5
8.0.0
10.0.0
10.0.1
10.0.2
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L

License Risks

6.0.5
8.0.0
10.0.0
10.0.1
10.0.2
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L
  • 0
    H
  • 0
    M
  • 0
    L

Security Policy
No
All security vulnerabilities belong to production dependencies of direct and indirect packages.

Snyk detected that the latest version of stockfish has a security vulnerability.

We highly advise you to review these security issues.

You can connect your project's repository to Snyk to stay up to date on security alerts and receive automatic fix pull requests.

We found a way for you to contribute to the project! Looks like stockfish is missing a security policy.

    # Install the Snyk CLI and test your project
npm i snyk && snyk test stockfish
Fix it in your project with Snyk!

Maintenance

Inactive
Commit Frequency
Open Issues
18
Merged PR
2
Open PR
0
Last Commit
10 months ago

Further analysis of the maintenance status of stockfish based on released npm versions cadence, the repository activity, and other data points determined that its maintenance is Inactive.

An important project maintenance signal to consider for stockfish is that it hasn't seen any new versions released to npm in the past 12 months, and could be considered as a discontinued project, or that which receives low attention from its maintainers.

In the past month we didn't find any pull request activity or change in issues status has been detected for the GitHub repository.

Community

Sustainable
Readme.md
No
Contributing.md
No
Code of Conduct
No
Contributors
50
Funding
No
License
GPL-3.0

With more than 10 contributors for the stockfish repository, this is possibly a sign for a growing and inviting community.

We found a way for you to contribute to the project! Looks like stockfish is missing a Code of Conduct.

We noticed that this project uses a license which requires less permissive conditions such as disclosing the source code, stating changes or redistributing the source under the same license. It is advised to further consult the license terms before use.

Package

Node.js Compatibility
not defined

Age
6 years
Dependencies
0 Direct / 0 Total
Versions
5
Install Size
1.5 MB
Dist-tags
1
# of Files
17
Maintainers
1
TS Typings
No

stockfish has more than a single and default latest tag published for the npm package. This means, there may be other tags available for this package, such as next to indicate future releases, or stable to indicate stable releases.