ECMAScript code generator
66%
Total Score
67
100
85
75
The package has 61 releases and a historically regular 22-day median interval, but it has had no release in over three years. That long release gap materially raises abandonment concern.
There were no commits and no active maintainers in the last three months. Combined with the old latest release, this is meaningful evidence of slowed maintenance.
The repository has 113 open issues and 31 open pull requests, but no issues or pull requests were opened, closed, or merged in the last month. This supports the view that active maintenance is currently limited.
The repository uses Gulp and npm scripts for builds, showing established build automation, but it has no security scanning tools. The tooling is adequate while security-process visibility is limited.
The repository has no security policy. This weakens vulnerability-reporting transparency, though it is a governance gap rather than a direct indication that the release is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
esprima Version ^4.0.1 | — | — |
esutils Version ^2.0.2 | — | — |
estraverse Version ^5.2.0 | — | — |
source-map Version ~0.6.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.