The source is small and has no security policy. Its repository is not archived and the release is stable, but maintenance has been inactive for about 10 months.
55%
Total Score
75
75
75
No license declaration, license file, or repository license file was detected, leaving the terms for using and redistributing this package unclear.
A README is present but contains only 2 characters, offering essentially no consumer guidance; the absence of tests and a changelog is normal for a published artifact, and a GitHub release exists for this version.
The package has 6 releases in the last 12 months, but they were highly clustered with a median interval of about 51 minutes, and the latest release was about 10 months ago. This suggests an early burst followed by inactivity.
There were 0 commits and 0 active maintainers in the last 3 months, consistent with the repository having seen no recent maintenance. The recent release and non-archived status provide limited compensating evidence but do not remove the concern.
The linked repository has no security policy, reducing transparency about how vulnerabilities should be reported and handled.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.