The MIT license, focused README, matching repository, and organization backing improve transparency. There are no install scripts or deprecation notice, but the project has little demonstrated release maturity.
60%
Total Score
75
80
75
Only one release was published, with no releases in the last 12 months and nearly four years since the initial release. This limits evidence of sustained maintenance and makes the package a dependency risk.
No commits or active maintainers were recorded in the last three months. Although the repository is not archived, the recent activity data provides weak evidence of ongoing maintenance.
The linked repository has no security policy. For a small helper library this is a transparency and vulnerability-reporting gap, though it is not severe on its own.
Version 0.1 is not a stable major release, so compatibility and maturity are less established. It is not marked as a prerelease, which provides a small counterpoint.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.