Browser-side SDF font generator
82%
Total Score
healthy
Mature, well-documented package with current releases, but no recent commits and a workflow cache warning temper confidence.
The repository records 0 commits and 0 active maintainers in the last 3 months. This is a maintenance caution, although the release history and current push provide some compensating evidence.
No build tool or security scanning tool was detected. For this small JavaScript package this is a modest transparency and hygiene gap, not evidence of abandonment by itself.
Both workflows were analyzed with no untrusted checkout or script-injection paths. All 4 action references are unpinned, and a low-confidence cache-poisoning finding was reported in the release workflow; these are workflow hygiene concerns rather than a severe risk on their own.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.