TLDS list for domain validation
84%
Total Score
67
100
94
90
One contributor made 100% of the 5 recent commits. Organization ownership provides some ability to hand maintenance off, but no second recent contributor is shown, so continuity risk remains.
The repository received 5 commits in the last 3 months, but all were made by one active maintainer. The recent activity is positive, while the single-person execution leaves some continuity risk.
The repository uses TypeScript, Vitest, and npm build tooling, demonstrating a maintained development and test setup. No security scanning tool was detected, which is a minor transparency gap rather than a severe concern.
Neither workflow declares top-level token permissions, and one relies on job-level permissions. This is less explicit than a repository-wide read-only policy, but no top-level write permissions were found.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.