/
A checklist for evaluating open source npm packages: provenance, maintainer signals, CI quality, and security policy — Trendlair