🚀 Socket Launch Week Day 4:Socket MCP Adds Org Alerts, Threat Feed Review, and Package Inspection.Learn more
Sign In

@greenarmor/ges-scoring-engine

Package Overview
Dependencies
Maintainers
1
Versions
43
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

@greenarmor/ges-scoring-engine

GESF Scoring Engine - Compliance scoring across frameworks

npmnpm
Version
1.4.0
Version published
Maintainers
1
Created
Source

@greenarmor/ges-scoring-engine

Compliance scoring across frameworks for the Green Engineering Standard Framework (GESF).

Calculates per-framework and overall compliance scores based on evaluated controls. Produces structured score files for display and reporting.

Install

npm install @greenarmor/ges-scoring-engine

Exports

FunctionDescription
scoreControls(controls)Calculate a 0–100 score from evaluated controls
scoreByFramework(controls, frameworks)Score controls grouped by framework
computeOverallScore(frameworkScores)Weighted overall compliance score
generateScoreFile(controls, frameworks)Generate a complete ScoreFile structure
formatScoreOutput(score)Format score file as a human-readable string

Usage

import { generateScoreFile, formatScoreOutput } from '@greenarmor/ges-scoring-engine';
import { createGDPRControls } from '@greenarmor/ges-compliance-engine';

const controls = createGDPRControls();
const score = generateScoreFile(controls, ['GDPR', 'OWASP', 'NIST', 'CIS']);

console.log(formatScoreOutput(score));
// GDPR ............. 94%
// OWASP ............ 91%
// NIST ............. 89%
// CIS .............. 92%
// Overall .......... 92%

Score Output

Scores are stored in .ges/score.json and include:

  • Per-framework percentages
  • Pass/fail/warning counts per framework
  • Weighted overall score
  • Timestamp
  • @greenarmor/ges-core — Types and constants
  • @greenarmor/ges-compliance-engine — Control evaluation
  • @greenarmor/ges-report-generator — Report generation from scores

License

MIT

FAQs

Package last updated on 18 Jun 2026

Did you know?

Socket

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Install

Related posts