72%
Total Score
100
92
100
50
No build attestation or trusted-publisher provenance is provided, leaving the relationship between the published artifact and its source less verifiable.
The artifact includes a changelog, but no README is present; that makes usage and integration guidance harder to verify for a library consumer.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.