The package includes a README, tests, and an MIT license, with no runtime dependencies or install scripts. Its repository is small and has no security policy, so future maintenance and security response are uncertain.
42%
Total Score
25
100
79
75
The latest release was nearly nine years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk despite the package having seven releases overall.
The repository has had no commits or active maintainers in the last three months, consistent with the nearly nine-year release gap and indicating no current maintenance capacity.
A single registry maintainer creates a thin publishing base and increases continuity risk. The matching repository owner provides some accountability but does not offset the lack of recent activity.
The repository has only 1 star, 1 fork, and 1 watcher, offering little evidence of a broader community that could help sustain or review the package.
The repository has no security policy, leaving no documented channel or process for reporting and handling vulnerabilities. This is a transparency gap, though not evidence of malicious behavior.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.