The package has a clear README and a repository that matches its name, with organization backing. Its MIT manifest conflicts with the GPL-2.0 license file, so confirm licensing before adoption.
55%
Total Score
88
89
83
A license file is present, but the manifest declares MIT while the detected and repository license is GPL-2.0. The mismatch creates a real licensing clarification requirement.
Only two releases were published, and the latest was in February 2021, with no releases in over five years. This is a substantial maintenance concern despite the package having a stable major version.
There were no commits or active maintainers in the prior three months, consistent with the repository having been inactive since February 2021. This materially raises abandonment risk.
The repository has no security policy, reducing transparency for vulnerability reporting. This is a moderate hygiene concern, partly offset by the project's small scope and clear README.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.