depscope
Packages
IntegrateAPI DocsCuratorBenchmarkCoverage
Sign inGet API access

Related on DepScope

Alternatives
  • react-date-picker-deprecated— Security holding package
  • webpack-hermione-middleware— Security holding package
  • picker-gettext-extractor— Security holding package
More
  • All npm packages →
  • Breaking changes index →
  • Bug index →
  • AI hallucination corpus →
depscope/npm/forge-jsx

forge-jsx

npmv0.0.1-security

security holding package

1 versions0 deps
npm/security-holder
40
/ 100
Health
do not use

Do not install. Package is flagged as malicious (advisory MAL-2026-2884).

Health breakdown0 – 100
25/25
maintenance
0/20
popularity
15/25
security
0/15
maturity
0/15
community
Vulnerabilities
1
1 critical
Advisories (1)
SeverityIDSummaryFixed in
criticalGHSA-6j9q-8g4r-fm8qMalicious code in forge-jsx (npm)—

Bundle & TypeScript

🌟

TypeScript

0/10untyped
No type definitions available
⚠ Malicious package
This package is flagged as malicious by the OpenSSF/OSV community feed. Do not install.
Advisory: MAL-2026-2884 — Malicious code in forge-jsx (npm)

Health History

Dependency Tree

License Audit

API access

Get this data programmatically — free, no authentication.

curl https://depscope.dev/api/check/npm/forge-jsx
More from npm
semverdebugansi-stylesminimatchbrace-expansionstrip-ansi
Browse all npm packages →

First published · 2026-05-04T01:19:39.841Z

Last updated · 2026-05-04T01:19:39.989Z

DepScope

Package intelligence for AI agents. 19 ecosystems.

Resources
API DocumentationHallucination BenchmarkFor EnterpriseSwagger / OpenAPIPopular PackagesCoverageAI Plugin SetupWatch the pitch (60s)
Legal
Legal hubPrivacy PolicyTerms of ServiceCookie PolicyAcceptable UseAttributionDPASub-processorsSecurityImprintContact中文
© 2026 Cuttalo srl — Italy · VAT IT03242390734Built for AI agents