It has clear licensing, documentation, and a focused dependency set. The organization-backed repository is active, though recent work is concentrated in one maintainer and workflow actions are not pinned.
78%
Total Score
67
100
100
75
One contributor made all five commits in the last three months, leaving maintenance dependent on a single active contributor. Organization backing provides some handoff capacity but does not remove the concentration risk.
Five commits were made in the last three months, showing ongoing work, although all were made by one active maintainer.
The repository has no security policy, which leaves vulnerability-reporting expectations undocumented; this is a transparency gap, not evidence of unsafe code.
Both workflows were analyzed without high-confidence findings or unsafe triggers, but all six action references are unpinned, so their versions can change without a repository change. No top-level permissions block is acceptable on its own.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
drago-ex/translator Version ^3.0 | — | — |
drago-ex/application Version ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.