Tests and Apache-2.0 licensing provide useful basic coverage. The missing README and absent security scanning reduce transparency for an SDK.
42%
Total Score
50
100
72
83
The package includes tests in the artifact and repository, which is useful for an SDK, but it has no README or changelog. The missing README is a real integration and transparency gap for library consumers.
The package has only two releases, both in August 2018, with no releases in roughly eight years. This strongly indicates abandonment risk despite the stable version format.
There were zero commits and zero active maintainers in the last three months, consistent with the repository having been inactive since 2018.
The repository name does not match amzing/aliyun-dysms, and no README package mention was available. This creates uncertainty about whether the linked source repository belongs to this package.
The repository has zero stars and forks and one watcher, providing little supporting evidence of community use or review. Popularity is only supporting evidence, so this does not decide the assessment alone.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.