npm package report

Is html-webpack-plugin safe?

Checked against the XYZ decision brain: known-malicious corpus, advisories, commit-level findings, dependencies and provenance.

cyberxyz.io/packages/npm/html-webpack-plugin
npm packagelast checked 2026-09-19

html-webpack-plugin · verdict ALLOW · no known risk

0.6/10
XYZ SCORE
SUMMARY

Verdict ALLOW · 11 graph-tracked dependencies · provenance: none found

Re-check live →

SIGNALS
All signals clearclearOK

No known-malicious match, advisory, commit-level finding or anomaly.

DEPENDENCIES
appcache-webpack-plugin@^0.2.0clean
bluebird@^2.9.25clean
blueimp-tmpl@^2.5.4clean
commitizen@2.9.6clean
@commitlint/cli@^18.4.4clean
@commitlint/config-conventional@^18.4.4clean
cross-env@^7.0.3clean
cspell@^8.3.2clean
css-loader@^0.12.0clean
cz-conventional-changelog@2.1.0clean
dir-compare@0.0.2clean
PACKAGE html-webpack-pluginECOSYSTEM npmDECISION ALLOW

Package facts

Weekly downloads
64.1M
GitHub stars
10.7k
Centrality tier
tier 1
Build provenance
none found
Direct dependencies
11

Baked snapshot · run a live check for the current verdict · browse all packages

Other package reports

ignoreimmerimmutablehighlight.jshelmethappy-dom

See all package reports or check any package live.