The BSD-3-Clause license, small dependency footprint, repository tests, and release notes make the package straightforward to evaluate and integrate. Its maintenance and security coverage are too weak for a dependable long-term dependency.
43%
Total Score
25
100
67
75
The package has had no release in more than eight years, and there were no releases in the last 12 months. Its early releases were close together, but the prolonged gap indicates abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months, with the last push in March 2018. No provided signal shows compensating recent maintenance.
There has been no issue or pull-request activity in the last month, while one issue remains open. This reinforces the lack of ongoing project attention.
The repository has zero stars and one fork, providing little evidence of a broad user or contributor base. Low popularity is supporting evidence rather than a concern by itself, but it offers no buffer against the maintenance gap.
The linked repository is not archived, which is a positive status signal. However, its last push was in March 2018, so the unarchived state does not offset the lack of recent activity.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.