ActionRank

Dart/Flutter Package Analyzer

Abandoned

axel-op/dart-package-analyzer · MIT

GitHub Action that uses the Dart Package Analyzer to compute the Pub score of Dart/Flutter packages

53 starsLast commit 2 years agoLatest v3
F
34
/ 100
Security 39Maintenance 4Popularity 28Reliability 89

Security signals

OpenSSF Scorecard3.2 / 10
SECURITY.md presentNo
Immutable releasesNot enabled
Known vulnerabilitiesNone on record

How to use it safely

Recommended: pin to commit SHA
uses: axel-op/dart-package-analyzer@7a6c3c66bce78d82b729a1ffef2d9458fde6c8d2 # v3

Mutable tags like v3 can be rewritten to point at malicious commits. Pinning to the full commit SHA is the only reference GitHub guarantees immutable.

Full workflow example
steps:
  - uses: axel-op/dart-package-analyzer@7a6c3c66bce78d82b729a1ffef2d9458fde6c8d2 # v3

Score breakdown

Security (35%)39
Popularity (20%)28
Maintenance (30%)4
Reliability (15%)89