0
/ 100
Polished work that hasn't found its audience yet.
Microsoft Authentication Library (MSAL) for JS
Top fixes
Highest-impact changes first, ranked by point weight
- 1README12pt
Show a quick-start snippet so contributors can see what using your project looks like.
- 2README12pt
Add CI/build status badges from shields.io or your CI provider to signal project health.
- 3Install and run instructions9pt
Add a .env.example listing all required environment variables so contributors know what to set up.
- 4Reproducibility6pt
Add a Dockerfile, .nvmrc, or .python-version to pin the runtime version and make the environment reproducible.
Working through the fixes? Let every push regrade itself.
The free GitHub App rescans this repo on every push and posts the grade as a commit check, so the score climbs without coming back to rescan by hand.
Scorecard
Every check, grouped by category and sorted worst-first
Documentation
87
README is present.
README documents how to install the project.
Contributing guide is detailed and thorough.
Licensed under MIT.
Engineering
99
Lockfile present (package-lock.json). Installs are reproducible.
Test files detected (extensions/msal-node-extensions/jest.config.js).
CI is configured (.github/workflows/build-test-pr.yml).
Linter or formatter configured (.editorconfig).
Issue or PR templates present.
Project health
61
No pushes in over 2 years. Looks unmaintained (−95 pts).
→ A recent commit signals the project is alive and worth using.
.gitignore present.
Dependency manifest found (package.json).
Repository has a description.
Repository health signals
Activity, community, and responsiveness at scan time
Activity
- -Commits (30d / 90d)
- 0Forks
- 0Releases
Community
- -Community health
- -authors own >50% of commits
- 0Watchers
Responsiveness
- -Median issue response
- -Median PR merge time
- 0Open issues
Repository files36 root entries
- .githubGood: CI is configured (.github/workflows/build-test-pr.yml).Good: Dependabot covers 8 ecosystems (npm, npm, npm, npm, npm, npm, npm, npm). Dependencies stay current.Good: Issue or PR templates present.
- .vscode
- build
- change
- docs
- experimental
- extensionsGood: Test files detected (extensions/msal-node-extensions/jest.config.js).
- lib
- maintenance
- release-scripts
- samplesIssue: Build artifacts or local files may be committed (samples/msal-core-samples/react-sample-app/.env) (−40 pts).Fix: Remove them and add to .gitignore.
- .babelrc
- .beachballrc
- .browserslistrc
- .editorconfigGood: Linter or formatter configured (.editorconfig).
- .eslintignore
- .eslintrc.json
- .gitattributes
- .gitignoreGood: .gitignore present.
- .nojekyll
- .npmrc
- 1p-sync.yml
- azure-pipelines.yml
- codecov.yml
- CODEOWNERS
- contributing.mdGood: Contributing guide is detailed and thorough.Good: Contributing guide includes setup/install instructions.Issue: Contributing guide lacks a code style section (−8 pts).Fix: Describe your linting/formatting rules and how to run them.Good: Contributing guide explains how to run tests.Good: Contributing guide describes the PR/review workflow.Good: Contributing guide includes code examples.
- lerna.json
- LICENSEGood: Licensed under MIT.
- package-lock.jsonGood: Lockfile present (package-lock.json). Installs are reproducible.
- package.jsonGood: Dependency manifest found (package.json).
- README.mdGood: README is present.Good: README is well structured with multiple sections.Good: README includes screenshots or visuals. Great for first impressions.Issue: README has no code examples (−15 pts).Fix: Show a quick-start snippet so contributors can see what using your project looks like.Good: README links to a live demo or deployed app.Issue: No status badges in the README (−10 pts).Fix: Add CI/build status badges from shields.io or your CI provider to signal project health.Good: README documents how to install the project.Good: README documents how to run the project.
- roadmap.md
- SECURITY.mdGood: Security policy present.
- tsconfig.json
- typedoc.json
- yarn.lock
Add this badge to your README
It updates automatically each time the repo is re-graded.
[](https://www.repo-grade.com/report/karin-at-msft/microsoft-authentication-library-for-js)