The clear MIT license, tests, README, and zero runtime dependencies make the small codebase easy to inspect. Its repository has no security scanning and little evidence of broader adoption.
42%
Total Score
0
100
70
50
The package has only two releases, both published in December 2016, and none in the last 12 months. This long release gap is strong evidence of abandonment risk for a dependency.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the absence of releases since December 2016. There is no observed recent maintenance capacity.
The repository has 0 stars, 1 fork, and 1 watcher, providing little evidence of a broader user or maintainer community to help sustain the package.
The repository has no security policy, which reduces transparency about how future vulnerability reports would be handled. This is a hygiene concern, not evidence that the release is unsafe.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.