WelcomeScore.js.org
JavaScript Health is a read-only audit for package metadata, Node tooling, CI evidence, and contributor foundations.
npx welcomescore
Local CLI · no source upload
Public GitHub scan
JavaScript Repository Health Index
We read allowlisted public repository metadata and file-path signals. No source code, tokens, browser-local notes, Hall data, or Lounge data is retained.
This is not a security audit, quality certification, legal opinion, popularity ranking, or endorsement.
Terminal-native companion
Run the same local-first checks
The CLI reads only your selected local project directory. It does not upload source files, package manifests, environment values, or repository credentials to WelcomeScore.
npx welcomescorenpx welcomescore --ci --threshold=80npx welcomescore --fix --dry-runRemediation boundary
Maintainer-reviewed templates
The CLI’s fix mode creates only missing low-risk templates. It never overwrites files, edits package.json, installs dependencies, runs scripts, commits, publishes, or changes GitHub.
Read the safety model →