@salesforce/source-deploy-retrieve vulnerabilities

JavaScript library to run Salesforce metadata deploys and retrieves

Package Health Score

95/100
  • securityNo known security issues
  • popularityPopular
  • maintenanceHealthy
  • communityActive

Maintenance

HEALTHY

Commit Frequency

Loading chart...

Open Issues
0
Open PR
13
New PRS
1
Last Release
6 days ago
Last Commit
4 days ago
Maintainers
28

Further analysis of the maintenance status of @salesforce/source-deploy-retrieve based on released npm versions cadence, the repository activity, and other data points determined that its maintenance is Healthy.

We found that @salesforce/source-deploy-retrieve demonstrates a positive version release cadence with at least one new version released in the past 3 months.

As a healthy sign for on-going project maintenance, we found that the GitHub repository had at least 1 pull request or issue interacted with by the community.

Popularity

POPULAR
Weekly downloads (392.3k)
GitHub Stars
85
Forks
149
Contributors
130

The npm package @salesforce/source-deploy-retrieve receives a total of 392,318 downloads a week. As such, we scored @salesforce/source-deploy-retrieve popularity level to be Popular.

Based on project statistics from the GitHub repository for the npm package @salesforce/source-deploy-retrieve, we found that it has been starred 85 times.

Downloads are calculated as moving averages for a period of the last 12 months, excluding weekends and known missing data points.

Community

ACTIVE
Readme.md
Yes
Contributing.md
Yes
Code of Conduct
Yes
Contributors
130
Funding
No
LICENSE
Apache-2.0

A good and healthy external contribution signal for @salesforce/source-deploy-retrieve project, which invites more than one hundred open source maintainers to collaborate on the repository.

License

Apache-2.0>=12.20.0;
BSD-3-Clause>=1.0.1 <12.20.0;

Direct Vulnerabilities

No direct vulnerabilities have been found for this package in Snyk’s vulnerability database. This does not include vulnerabilities belonging to this package’s dependencies.

Does your project rely on vulnerable package dependencies?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities (in both your packages & their dependencies) and provides automated fixes for free.

Scan for indirect vulnerabilities

Security

NO KNOWN SECURITY ISSUES
Show only direct vulnerabilities in latest version
No vulnerabilities found

No vulnerabilities found in the latest version

Package versions

576 VERSIONS IN TOTAL See all versions
versionpublisheddirect vulnerabilities
12.31.1419 Feb, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
12.31.1318 Feb, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
12.31.1217 Feb, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
12.31.1110 Feb, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
12.31.1031 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
12.31.927 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
12.31.822 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
12.31.716 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
12.31.613 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
12.31.512 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L