Installations
npm install @plaa/metascraper-image
Developer Guide
Typescript
No
Module System
CommonJS
Min. Node Version
>= 8
Node Version
12.1.0
NPM Version
lerna/3.14.1/node@v12.1.0+x64 (darwin)
Score
50.9
Supply Chain
61.2
Quality
73.3
Maintenance
40
Vulnerability
99.6
License
Releases
Contributors
Languages
HTML (98.88%)
JavaScript (1.1%)
CSS (0.03%)
Developer
Download Statistics
Total Downloads
468
Last Day
1
Last Week
2
Last Month
3
Last Year
39
GitHub Statistics
2,375 Stars
1,895 Commits
169 Forks
18 Watching
4 Branches
38 Contributors
Bundle Size
1.53 MB
Minified
236.03 kB
Minified + Gzipped
Package Meta Information
Latest Version
5.4.0
Package Id
@plaa/metascraper-image@5.4.0
Unpacked Size
6.87 kB
Size
2.44 kB
File Count
5
NPM Version
lerna/3.14.1/node@v12.1.0+x64 (darwin)
Node Version
12.1.0
Total Downloads
Cumulative downloads
Total Downloads
468
Last day
0%
1
Compared to previous day
Last week
0%
2
Compared to previous week
Last month
50%
3
Compared to previous month
Last year
-64.5%
39
Compared to previous year
Daily Downloads
Weekly Downloads
Monthly Downloads
Yearly Downloads
Dependencies
1
Dev Dependencies
1
metascraper-image
Get image property from HTML markup.
Install
1$ npm install metascraper-image --save
License
metascraper-image © microlink.io, Released under the MIT License.
Authored and maintained by microlink.io with help from contributors.
microlink.io · GitHub @microlink.io · Twitter @microlinkhq
No vulnerabilities found.
Reason
30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
Reason
no binaries found in the repo
Reason
license file detected
Details
- Info: project has a license file: LICENSE.md:0
- Info: FSF or OSI recognized license: MIT License: LICENSE.md:0
Reason
0 existing vulnerabilities detected
Reason
Found 2/16 approved changesets -- score normalized to 1
Reason
detected GitHub workflow tokens with excessive permissions
Details
- Warn: no topLevel permission defined: .github/workflows/main.yml:1
- Warn: no topLevel permission defined: .github/workflows/pull_request.yml:1
- Info: no jobLevel write permissions found
Reason
dangerous workflow patterns detected
Details
- Warn: script injection with untrusted input ' github.head_ref ': .github/workflows/main.yml:33
Reason
no effort to earn an OpenSSF best practices badge detected
Reason
security policy file not detected
Details
- Warn: no security policy file detected
- Warn: no security file to analyze
- Warn: no security file to analyze
- Warn: no security file to analyze
Reason
project is not fuzzed
Details
- Warn: no fuzzer integrations found
Reason
branch protection not enabled on development/release branches
Details
- Warn: branch protection not enabled for branch 'master'
Reason
dependency not pinned by hash detected -- score normalized to 0
Details
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/main.yml:14: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/main.yml/master?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/main.yml:19: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/main.yml/master?enable=pin
- Warn: third-party GitHubAction not pinned by hash: .github/workflows/main.yml:23: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/main.yml/master?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/main.yml:38: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/main.yml/master?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/main.yml:39: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/main.yml/master?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/main.yml:57: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/main.yml/master?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/main.yml:61: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/main.yml/master?enable=pin
- Warn: third-party GitHubAction not pinned by hash: .github/workflows/main.yml:65: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/main.yml/master?enable=pin
- Warn: third-party GitHubAction not pinned by hash: .github/workflows/main.yml:78: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/main.yml/master?enable=pin
- Warn: third-party GitHubAction not pinned by hash: .github/workflows/main.yml:89: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/main.yml/master?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/pull_request.yml:15: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/pull_request.yml/master?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/pull_request.yml:16: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/pull_request.yml/master?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/pull_request.yml:30: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/pull_request.yml/master?enable=pin
- Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/pull_request.yml:34: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/pull_request.yml/master?enable=pin
- Warn: third-party GitHubAction not pinned by hash: .github/workflows/pull_request.yml:38: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/pull_request.yml/master?enable=pin
- Warn: third-party GitHubAction not pinned by hash: .github/workflows/pull_request.yml:56: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/pull_request.yml/master?enable=pin
- Warn: third-party GitHubAction not pinned by hash: .github/workflows/pull_request.yml:67: update your workflow using https://app.stepsecurity.io/secureworkflow/microlinkhq/metascraper/pull_request.yml/master?enable=pin
- Info: 0 out of 10 GitHub-owned GitHubAction dependencies pinned
- Info: 0 out of 7 third-party GitHubAction dependencies pinned
Reason
SAST tool is not run on all commits -- score normalized to 0
Details
- Warn: 0 commits out of 23 are checked with a SAST tool
Score
3.2
/10
Last Scanned on 2024-12-30
The Open Source Security Foundation is a cross-industry collaboration to improve the security of open source software (OSS). The Scorecard provides security health metrics for open source projects.
Learn More