Its README offers almost no usage guidance, and the project has no security policy. The minimal dependency set and matching repository reduce complexity, but they do not offset the long inactivity.
43%
Total Score
50
100
57
100
No declared license, license file, or repository license file was detected. Developers lack clear permission to use, modify, and redistribute the package.
The package has only two releases, both published about 3.5 years ago, with no release in the last 12 months. This is strong evidence of abandonment risk.
A single registry maintainer provides little observable publishing redundancy. The repository is user-owned rather than organization-backed, so no compensating project backing is shown.
A README is present, but it contains only 24 characters and provides almost no consumer guidance. The absent tests and changelog are normal for a published artifact and are not concerns here.
The repository recorded no commits and no active maintainers during the last 3 months, consistent with the long period since the last release.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.