The package is a small, stable browser plugin with a matching source tree and no install-time scripts. The missing license and no maintenance since April 2015 make this release a risky long-term dependency.
38%
Total Score
0
100
64
100
The latest release was published in April 2015, with no releases in the last 12 months and only four releases overall. That long gap is strong evidence of abandonment risk.
The repository has had zero commits and zero active maintainers in the last three months, with the last push in April 2015. The stable version does not compensate for more than 11 years without observed maintenance.
Neither the package nor the linked repository declares or contains a recognized license file. This creates a material transparency and adoption risk for downstream users.
The linked repository has one star, one watcher, and no forks. Low popularity is only supporting evidence, but it provides little indication of an active user or maintainer community.
The repository uses Composer, but no security-scanning tooling is present. This is a modest process gap rather than evidence that the package is unsafe by itself.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
components/jquery Version >=1.7 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.