The package has a clear MIT license, matching repository, usable README, and no install scripts. Its single release, absent tests, minimal adoption, and lack of security tooling make long-term maintenance and safe adoption difficult.
35%
Total Score
50
67
75
This package has only one release, published about 10 years ago, with no releases in the last 12 months; that is strong evidence of abandonment risk.
One registry maintainer is consistent with a small project, but there is no organization backing shown to compensate for that narrow publishing base.
The published artifact includes a 1,902-character README, which helps consumers integrate it, but it has no tests or changelog; the missing tests matter for a library.
The repository is owned by an individual user rather than an organization, so no institutional backing is shown to offset the package's narrow maintenance base.
The repository has zero stars and forks and one watcher, indicating minimal visible adoption; popularity is supporting evidence, but it adds to the broader maturity concern.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.