The package is clearly identified in its repository, has a usable README, and carries an MIT declaration. Its static icon payload has no install scripts or runtime dependencies, but the project shows no recent maintenance or security-policy coverage.
57%
Total Score
50
100
88
75
Only two releases exist, and the latest was published in February 2018, more than eight years ago. That is a meaningful maintenance concern, although a static icon package may need fewer updates than an active code library.
The repository recorded zero commits and zero active maintainers in the three months before collection, consistent with the last push being in February 2018. The package's simple asset-focused purpose partly limits the impact, but the absence of recent activity still raises abandonment risk.
The repository has no security policy. This is a transparency gap, though the package primarily distributes static icon assets and declares no install-time scripts.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.