Dart/Flutter Package Analyzer
Abandonedaxel-op/dart-package-analyzer · MIT
GitHub Action that uses the Dart Package Analyzer to compute the Pub score of Dart/Flutter packages
★ 53 starsLast commit 2 years agoLatest v3
F
34
/ 100
Security signals
OpenSSF Scorecard3.2 / 10
SECURITY.md presentNo
Immutable releasesNot enabled
Known vulnerabilitiesNone on record
How to use it safely
Recommended: pin to commit SHA
uses: axel-op/dart-package-analyzer@7a6c3c66bce78d82b729a1ffef2d9458fde6c8d2 # v3Mutable tags like v3 can be rewritten to point at malicious commits. Pinning to the full commit SHA is the only reference GitHub guarantees immutable.
Full workflow example
steps: - uses: axel-op/dart-package-analyzer@7a6c3c66bce78d82b729a1ffef2d9458fde6c8d2 # v3
Score breakdown
Security (35%)39
Popularity (20%)28
Maintenance (30%)4
Reliability (15%)89