The package has a clear README, a matching source repository, and a declared license. Its very small scope, single-maintainer ownership, and lack of tests or security tooling increase the maintenance risk for a dependency.
32%
Total Score
25
100
64
67
There has been only one release, published nearly 14 years ago, with no releases in the last 12 months. This is strong evidence that the package is abandoned rather than actively maintained.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with its last push occurring in November 2012. No provided maintenance signal compensates for this inactivity.
The registry lists one maintainer, and the project backing identifies an individual-owned repository rather than organizational backing. A single maintainer is a meaningful continuity risk for an old, inactive package.
The package contains only four files, including one implementation file and a README, indicating a very small and limited project. The small scope reduces complexity but does not offset the long maintenance gap.
A substantial README is present, which helps consumers understand the package, while the absence of tests and a changelog is not itself a packaging gap. The README describes the project as early-stage and limited to read operations, reducing maturity confidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
joseym/li3_installer Version master | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.