A configurable mock file system. You know, for testing.
66%
Total Score
50
100
90
67
Only one account has registry publish access, which creates a limited publishing base. The linked repository is maintained by the same individual, so there is no broader observed maintainer capacity to offset that concentration.
The project is mature, with 87 releases over about 13 years, but it has made no releases in the last 12 months and the latest release was about 19 months ago. This materially raises maintenance risk despite the long history.
The repository recorded no commits and no active maintainers in the last 3 months. The recent release history and repository push evidence provide some context, but current development activity is still notably quiet.
No repository security policy was found. This is a transparency gap, though the repository does use Dependabot and the workflow audit found no security findings.
The single workflow was fully analyzed with no audit findings or untrusted checkout/script-injection paths. Both action references are unpinned, a moderate reproducibility and maintenance-hygiene weakness.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.