The package includes a clear MIT license, a usable README, and extensive tests. Its small maintainer base and absent security policy leave little evidence of ongoing support.
42%
Total Score
25
75
83
The package has only two releases, and none in the last six years; the latest release was published over six years ago. This is strong evidence of abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap. No provided signal shows compensating recent maintenance.
One registry maintainer is a thin publishing base, increasing continuity risk when the repository also shows no recent activity. The linked project is user-owned rather than organization-backed.
The repository has zero stars and forks and one watcher, providing little supporting evidence of community adoption. Popularity is supporting evidence, so this is a caution rather than a verdict by itself.
No security policy was found in the repository, leaving vulnerability-reporting expectations unclear. This matters more alongside the absence of recent maintenance.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.