npm package report

Is typescript-eslint safe?

Checked against the XYZ decision brain: known-malicious corpus, advisories, commit-level findings, dependencies and provenance.

cyberxyz.io/packages/npm/typescript-eslint
npm packagelast checked 2026-09-19

typescript-eslint · verdict ALLOW · no known risk

0.6/10
XYZ SCORE
SUMMARY

Verdict ALLOW · 8 graph-tracked dependencies · provenance: verified (sigstore)

Re-check live →

SIGNALS
Commit-Level AnalysisclearOK

5 unconfirmed pattern hit(s) in watched commit history; none verified as malicious.

Anomaly HistoryclearOK

12 historical anomaly alert(s) (version_jump) on this package. Add a version to check whether it is affected.

DEPENDENCIES
downlevel-dts@*clean
eslint@^8.57.0 || ^9.0.0 || ^10.0.0clean
jest@29.7.0clean
@jest/types@29.6.3clean
prettier@^3.0.3clean
rimraf@*clean
typescript@*clean
@typescript-eslint/eslint-plugin@7.0.0clean
PACKAGE typescript-eslintECOSYSTEM npmDECISION ALLOW

Package facts

Weekly downloads
345M
Centrality tier
tier 1
Build provenance
verified (sigstore)
Direct dependencies
8

History on this package: popular package (1513 versions over 108d) with pattern-only evidence — de-escalated for review rather than blocked

Baked snapshot · run a live check for the current verdict · browse all packages

Other package reports

typescript-eslint__eslint-plugintypescript-eslint__experimental-utilstypescript-eslint__parsertypescripttypes__yargstypes__semver

See all package reports or check any package live.