The package includes tests, a readable README, release notes, and a minimal dependency footprint. Its source repository is archived and the only registry release was published nearly ten years ago, so maintenance cannot be relied on.
18%
Total Score
0
100
71
75
The package has only one release, published nearly ten years ago, with no releases in the last 12 months. This is strong evidence that the package is abandoned.
The repository had zero commits and zero active maintainers in the last three months. This reinforces the abandonment concern, although the archived status is the stronger signal.
The linked source repository is archived, despite a last push about three years ago. An archived repository is a severe adoption risk because active maintenance is no longer expected.
The repository has no published security policy. This reduces transparency and leaves vulnerability-reporting expectations unclear, though it is secondary to the maintenance risks.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.