The package has a clear license, a tiny dependency surface, and no install-time scripts. However, it has had no release or repository activity since October 2020, and the linked repository does not identify this package in its name or README.
38%
Total Score
0
100
60
75
Only one release exists, published in October 2020, with no releases in the past 12 months. This is strong evidence of abandonment for a package expected to receive maintenance when needed.
There were zero commits and zero active maintainers in the past three months, consistent with the package's multi-year lack of releases. This materially increases abandonment risk.
The repository name does not match the package name and its README does not mention the package, leaving uncertainty that the linked source repository actually belongs to this release.
The repository is not marked archived, but it was last pushed in August 2019. Its unarchived status does not compensate for the prolonged inactivity.
The repository has no security policy. For this small package the gap is not severe, but it weakens the process for reporting and handling vulnerabilities.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.