The package includes tests, an MIT license, and no install-time scripts, which reduce adoption and execution concerns. Its documentation is extremely thin, the repository does not clearly identify the package, and there is no security policy or scanning.
42%
Total Score
0
100
56
83
The package has only 3 releases, with the latest published in September 2016 and none in the last 12 months. This long period without releases is strong evidence of abandonment risk.
There were zero commits and zero active maintainers in the last 3 months, consistent with the release history showing no releases for years. This is a severe abandonment concern.
The package includes a README and tests, and the repository has tests and uses GitHub releases. The README is only 92 characters and there is no changelog, limiting consumer guidance but not creating a major transparency gap by itself.
The repository name does not match the package name and its README does not mention the package. Although a name mismatch can occur for subpackages, the missing README reference makes the package-to-repository link less transparent.
The repository has zero stars, forks, and watchers, providing no supporting evidence of broad adoption. Popularity is only supporting evidence, so this reinforces but does not determine the maintenance assessment.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
fpdo/fluentpdo Version ^1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.