PHPackages                             insite/composer-npm-audit - PHPackages - PHPackages  [Skip to content](#main-content)[PHPackages](/)[Directory](/)[Categories](/categories)[Trending](/trending)[Leaderboard](/leaderboard)[Changelog](/changelog)[Analyze](/analyze)[Collections](/collections)[Log in](/login)[Sign up](/register)

1. [Directory](/)
2. /
3. [Security](/categories/security)
4. /
5. insite/composer-npm-audit

ActiveComposer-plugin[Security](/categories/security)

insite/composer-npm-audit
=========================

Composer plugin that looks for vulnerabilities in NPM packages

0.3.2(3y ago)04.1k↓33.3%GPL-2.0-or-later

Since Mar 30Compare

[ Source](https://github.com/prudloff-insite/composer-npm-audit)[ Packagist](https://packagist.org/packages/insite/composer-npm-audit)[ RSS](/packages/insite-composer-npm-audit/feed)WikiDiscussions Synced 1mo ago

READMEChangelogDependencies (6)Versions (12)Used By (0)

### README not available

The README for this package hasn't been synced yet. View it on [GitHub](https://github.com/prudloff-insite/composer-npm-audit).

###  Health Score

27

—

LowBetter than 49% of packages

Maintenance20

Infrequent updates — may be unmaintained

Popularity20

Limited adoption so far

Community4

Small or concentrated contributor base

Maturity52

Maturing project, gaining track record

How is this calculated?**Maintenance (25%)** — Last commit recency, latest release date, and issue-to-star ratio. Uses a 2-year decay window.

**Popularity (30%)** — Total and monthly downloads, GitHub stars, and forks. Logarithmic scaling prevents top-heavy scores.

**Community (15%)** — Contributors, dependents, forks, watchers, and maintainers. Measures real ecosystem engagement.

**Maturity (30%)** — Project age, version count, PHP version support, and release stability.

###  Release Activity

Cadence

Every ~119 days

Recently: every ~129 days

Total

10

Last Release

1154d ago

### Community

Maintainers

![](https://www.gravatar.com/avatar/87d4515168f3d16dcaf23af7184edbe8ef073c99dddd36b3ca5b2953ba415e03?d=identicon)[prudloff-insite](/maintainers/prudloff-insite)

![](https://www.gravatar.com/avatar/9b241b88818e2034c1257f4a425564231c89ded760ecf239a25e23804de55715?d=identicon)[gaelg](/maintainers/gaelg)

### Embed Badge

![Health badge](/badges/insite-composer-npm-audit/health.svg)

```
[![Health](https://phpackages.com/badges/insite-composer-npm-audit/health.svg)](https://phpackages.com/packages/insite-composer-npm-audit)
```

###  Alternatives

[akaunting/laravel-firewall

Web Application Firewall (WAF) package for Laravel

999465.8k2](/packages/akaunting-laravel-firewall)[paragonie/certainty

Up-to-date, verifiable repository for Certificate Authorities

2642.4M20](/packages/paragonie-certainty)[dgtlss/warden

A Laravel package that proactively monitors your dependencies for security vulnerabilities by running automated composer audits and sending notifications via webhooks and email

8745.6k](/packages/dgtlss-warden)[acmephp/core

Raw implementation of the ACME protocol in PHP

38973.7k7](/packages/acmephp-core)[nickurt/laravel-pwned-passwords

PwnedPasswords for Laravel 11.x/12.x/13.x

187.5k](/packages/nickurt-laravel-pwned-passwords)[plan2net/typo3-update-check

A Composer plugin that checks for TYPO3 updates and provides detailed information about breaking changes and security updates

204.5k](/packages/plan2net-typo3-update-check)

PHPackages © 2026

[Directory](/)[Categories](/categories)[Trending](/trending)[Changelog](/changelog)[Analyze](/analyze)
