npm package report

Is eslint-plugin-unicorn safe?

Checked against the XYZ decision brain: known-malicious corpus, advisories, commit-level findings, dependencies and provenance.

cyberxyz.io/packages/npm/eslint-plugin-unicorn
npm packagelast checked 2026-09-19

eslint-plugin-unicorn · verdict ALLOW · no known risk

0.6/10
XYZ SCORE
SUMMARY

Verdict ALLOW · 4 graph-tracked dependencies · provenance: none found

Re-check live →

SIGNALS
Commit-Level AnalysisclearOK

14 unconfirmed pattern hit(s) in watched commit history; none verified as malicious.

DEPENDENCIES
ava@*clean
@ava/babel@^1.0.1clean
@babel/code-frame@7.10.3clean
@babel/core@7.12.10clean
PACKAGE eslint-plugin-unicornECOSYSTEM npmDECISION ALLOW

Package facts

Weekly downloads
15.9M
GitHub stars
4.9k
Centrality tier
tier 1
Build provenance
none found
Direct dependencies
4

History on this package: OpenSSF Scorecard overall=4.7 (2-5 — weak hygiene)

Baked snapshot · run a live check for the current verdict · browse all packages

Other package reports

eslint-plugin-vueeslint-scopeeslint__eslintrceslint-plugin-storybookeslint-plugin-prettiereslint-plugin-mocha

See all package reports or check any package live.