Tests and a changelog are present, and the repository is not archived. The minimal README and absent security policy leave limited transparency for future maintenance.
38%
Total Score
75
100
79
75
The published artifact includes a README, tests, and a changelog, and the repository also has tests and a changelog. However, the README is only 935 characters and its content is essentially “TBD,” limiting consumer guidance.
The package has made no release for more than 7 years, after only three releases overall. This is strong evidence of abandonment risk despite the stable 2.0.0 version.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the long release gap and suggesting little ongoing maintenance.
The repository has 0 stars, 1 fork, and 4 watchers. Popularity is only supporting evidence, but these very low figures provide no meaningful community-maintenance buffer.
The linked repository has no security policy, leaving no documented path for reporting vulnerabilities. This is a transparency gap, though it is less serious than the absence of maintenance activity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
appserver-io/description Version 13.0.* | — | — |
appserver-io/configuration Version 3.0.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.