@roots/bud-sassnpm
- latest 6.24.0
- licence MIT
- stars 347
- checked today
- registry ↗
- repository ↗
Vulnerabilities, end of life and next steps
Check a specific version for known advisories, documented mitigations and evidence-backed earlier-version options. Maintenance health is separate from vulnerability status.
Review remediation options →Maintenance trends
Loading historical repository activity…
Signals · last 1 check
The first observation is recorded. Trend lines appear once at least two checks have data for the same signal.
Commits 90d
0
Open issues
11
Unanswered
5
Contributors
0
What the project says about itself
- Build provenance — the latest release carries no provenance attestation. Source: the registry.
- Supported runtime — node >=16. Source: the registry.
- Publishers on the registry — 4. Source: the registry.
- Funding — github.com/sponsors/roots. Source: the registry.
- Security policy — published. Source: the repository.
- Open milestones — 6.6.0 1/1 done; 7.0.0 5/7 done; 6.7.0 12/12 done; 6.6.3 10/10 done; 6.6.4 1/1 done. Source: the repository's milestones.
- OpenSSF Scorecard — 5.1 / 10 on 2026-08-24. Source: OpenSSF, via deps.dev. A third party's view of security practice, not part of the health score.
Third-party facts checked today; registry facts on every crawl.
State history 1
| When | Change |
|---|---|
| 2026-09-14 | first verdict: finished |
Badge
Drop this in your README. It re-renders itself as the verdict changes.
[](https://isitdeadyet.dev/npm/@roots/bud-sass)
Watch it
Get told when @roots/bud-sass changes state, changes licence, or is deprecated — instead of finding out during an incident.
Free for up to 25 packages. Signing in is a link sent to your email — there is no password to choose.