Map over promises serially
68%
Total Score
50
100
89
83
The package has four releases over nearly ten years, with no release in the last five years and none in the past 12 months. This materially raises maintenance and compatibility risk.
There were no commits and no active maintainers in the measured three-month period, leaving current maintenance capacity uncertain despite the repository not being archived.
The repository reports no build or security-scanning tools. For this small package that is a hygiene limitation rather than a severe dependency risk.
The workflow audit completed cleanly with no dangerous triggers or audit findings, but both action references are unpinned, leaving a modest reproducibility and workflow supply-chain gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.