Usable with caveats: it is actively releasing and has a stable version, but the project is maintained by one contributor, has no license or README, and the linked repository does not clearly identify this package.
58%
Total Score
50
100
69
50
Neither the registry metadata nor the artifact or repository contains a license. That creates a real legal and transparency problem for adoption.
The artifact has no README, so consumers receive no documented usage guidance. The absence of tests and a changelog in the published package is normal packaging practice and is not treated as a gap.
One contributor made all 6 commits in the last 3 months, leaving no demonstrated handoff capacity or contributor redundancy.
There were 6 commits in the last 3 months, showing ongoing work. However, all activity came from one active maintainer, so continuity remains dependent on a single person.
The repository name does not match the package name, and no README mention was collected. Because the repository does not clearly identify this package, its connection to the published release is less transparent.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
gvargas/atusan-core Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.