The package includes tests, a README, and a clear MIT declaration, which support basic transparency. Its single-maintainer project has had no commits or releases for about four years, and it has no security policy or scanning tooling. Pin this version only if its stable, narrow functionality fits your needs.
58%
Total Score
33
78
75
The package has 12 releases, but none in the last 12 months and its latest release was about four years ago. This indicates meaningful abandonment risk despite its earlier release cadence.
There were no commits and no active maintainers in the last three months. Alongside the old latest release, this is strong evidence that maintenance has stopped or greatly slowed.
Only one registry account is listed as a maintainer. A single maintainer is not inherently unhealthy, but combined with the observed inactivity it leaves limited visible maintenance capacity.
The repository is owned by an individual user rather than an organization, so the single-maintainer context reflects a small personal project with no provided organizational backing.
The repository has zero stars and forks and one watcher, indicating very limited visible adoption. Popularity is only supporting evidence, but it provides little community backing here.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.