The package is licensed, documented, tested, and has a small runtime dependency set. Recent repository activity and regular releases are reassuring, but long-term continuity depends heavily on one maintainer.
68%
Total Score
67
100
100
50
Two registry accounts have publishing access, while repository activity shows one active contributor. The registry count is not evidence of a broader maintenance team, so it does not offset the concentrated contribution pattern.
One contributor made all 70 commits in the last 3 months, giving the project a bus factor of one. That concentration is a genuine long-term abandonment and handoff risk despite the high commit volume.
The repository has no SECURITY.md or other detected security policy. This leaves vulnerability reporting and response expectations unclear for a package intended for HTTP routing.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
dlunire/dlauth Version ^1.0 | — | — |
imagine/imagine Version ^1.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.