Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
No contributors or author data
MaintenancePackage does not specify a list of contributors or an author in package.json.
No bug tracker
MaintenancePackage does not have a linked bug tracker in package.json.
No repository
Supply chain riskPackage does not have a linked source code repository. Without this field, a package will have no reference to the location of the source code use to generate the package.
No website
QualityPackage does not have a website.
75011
7.22%49
4.26%1720
0.29%0
-100%2
-33.33%255
23.79%