Transparent health scores, security analysis, and maintenance insights for any npm package. Open algorithm. One API call.
Three endpoints cover every use case. No API key for free tier.
/api/v1/score/:packageFull health analysis. Supports scoped packages and specific versions.
react · @nuxt/kit · react@18.2.0
/api/v1/batchAudit your entire package.json. Up to 50 packages in one request.
{"packages": [...]}
/api/v1/compare?packages=a,bSide-by-side comparison of 2–5 packages with a recommendation.
react,vue,svelte
Every score is explainable. Every factor is documented. No black boxes.
"Is someone home?"
Publish recency, release frequency, maintainer count, commit activity, archived status
"Is it well-built?"
TypeScript types, module format, license, description, repository link, dependency count
"Is it safe to use?"
Known CVEs via OSV.dev, severity level, bus factor risk, dependency attack surface
"Does the community trust it?"
Weekly downloads (log scale), download trend, GitHub stars
Powered by public APIs — no vendor lock-in
npm Registry
Package metadata
npm Downloads
Download counts & trends
OSV.dev
Vulnerability database
GitHub API
Stars & commit activity
Start free. Scale when you need to.