drizzle-kit vulnerabilities

Drizzle Kit is a CLI migrator tool for Drizzle ORM. It is probably the one and only tool that lets you completely automatically generate SQL migrations and covers ~95% of the common cases like deletions and renames by prompting user input. <https://github
Licenses: MIT

Package Health Score

89/100
  • securityNo known security issues
  • popularityKey ecosystem project
  • maintenanceHealthy
  • communityActive

Maintenance

HEALTHY

Commit Frequency

Loading chart...

Open Issues
1198
Open PR
315
New PRS
1
Last Release
1 months ago
Last Commit
1 months ago
Maintainers
4

Further analysis of the maintenance status of drizzle-kit based on released npm versions cadence, the repository activity, and other data points determined that its maintenance is Healthy.

We found that drizzle-kit demonstrates a positive version release cadence with at least one new version released in the past 3 months.

As a healthy sign for on-going project maintenance, we found that the GitHub repository had at least 1 pull request or issue interacted with by the community.

Popularity

KEY ECOSYSTEM PROJECT
Weekly downloads (2.9M)
GitHub Stars
32.2k
Forks
1.1k
Contributors
0

The npm package drizzle-kit receives a total of 2,901,315 downloads a week. As such, we scored drizzle-kit popularity level to be Key ecosystem project.

Based on project statistics from the GitHub repository for the npm package drizzle-kit, we found that it has been starred 32,233 times.

Downloads are calculated as moving averages for a period of the last 12 months, excluding weekends and known missing data points.

Community

ACTIVE
Readme.md
No
Contributing.md
Yes
Code of Conduct
Yes
Contributors
0
Funding
Yes
LICENSE
Apache-2.0

This project has seen only 10 or less contributors.

How about a good first contribution to this project? It seems that drizzle-kit is missing a README file.

License

MIT>=0;

Direct Vulnerabilities

No direct vulnerabilities have been found for this package in Snyk’s vulnerability database. This does not include vulnerabilities belonging to this package’s dependencies.

Does your project rely on vulnerable package dependencies?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities (in both your packages & their dependencies) and provides automated fixes for free.

Scan for indirect vulnerabilities

Security

NO KNOWN SECURITY ISSUES
Show only direct vulnerabilities in latest version
No vulnerabilities found

No vulnerabilities found in the latest version

Package versions

1079 VERSIONS IN TOTAL See all versions
versionpublisheddirect vulnerabilities
1.0.0-beta.9-e89174b6 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
1.0.0-beta.9-c26fd2f6 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
1.0.0-beta.9-8df69926 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
1.0.0-beta.9-635dfc26 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
1.0.0-beta.9-5a931946 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
1.0.0-beta.9-42ad8bb6 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
1.0.0-beta.9-40889e56 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
1.0.0-beta.8-e601f806 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
1.0.0-beta.8-dbc35651 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
1.0.0-beta.8-c55bf0f2 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L