The package is clearly licensed, documented, tested in its repository, and has minimal runtime dependencies. Its maintenance has gone quiet since December 2024, while the identity overlap creates a serious adoption concern.
45%
Total Score
75
100
75
75
The package has 0.5 artifact overlap with eftec/bladeone and explicitly borrows that package's lookalike identity, without describing itself as a fork; consumers may have intended eftec/bladeone instead.
Although the package has 24 releases and a short historical median interval, it has made no release in the last 12 months; the latest release was December 31, 2024, indicating a long maintenance gap.
The repository recorded 0 commits and 0 active maintainers in the last three months, which supports the evidence of stalled current maintenance.
The repository has no security policy, which reduces disclosure transparency, though this is a secondary concern compared with the identity and maintenance signals.
The workflow audit completed fully, found no dangerous triggers or audit findings, and reports read-only permissions; however, both of its two action references are unpinned, leaving a modest reproducibility and action-integrity gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.