Description
Comprehensive NPM package safety report combining npm registry metadata, OSV vulnerability database, npms.io quality scores, and GitHub repo health. Returns risk_summary (low/medium/high/critical), CVE breakdown by severity, maintainer info, dependency counts, last-commit recency, archival status. Use?package=react or?package=react and version=18.2.0. Built for AI code-review agents and supply-chain auditors.
This is a ready-to-deploy endpoint for npm package intelligence, delivered as ready-to-run Node.js source.
Accepts 1 query parameter as documented in the included endpoint.json. It relies on 1 external API (GITHUB_TOKEN), configured via environment variables.
Package includes: handler.js (the request handler), endpoint.json (metadata and pricing schema), and a README with setup notes. Drop it into an Express (or similar) server and you have a working API endpoint in minutes.




Reviews
There are no reviews yet.