Tests, a substantial README, a matching repository, and MIT licensing improve transparency. Organization backing provides continuity, but the thin contributor base and absent security policy leave future support uncertain.
58%
Total Score
67
100
75
75
The package has had no registry release for over seven years: its latest release was March 2019, with none in the last 12 months. This is a significant maintenance concern, partly offset by recent repository activity.
All one recent commit came from a single contributor, leaving current maintenance dependent on one person. Organization ownership offers some handoff potential but does not compensate fully because no second contributor is active.
The repository recorded only one commit in the last three months, indicating limited recent maintenance activity even though development has not stopped entirely.
The repository has no documented security policy. This is a transparency and vulnerability-reporting gap, though it is not by itself evidence of unsafe code.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.