The artifact is tiny, lacks a README, and carries a proprietary declaration despite an MIT license file. The repository could not be found, so current maintenance and provenance cannot be verified.
38%
Total Score
100
60
75
Only one release exists, published in August 2016, with no releases in the last 12 months. Nearly ten years without a release is strong evidence of abandonment risk.
The artifact contains an MIT license file, but the manifest declares the package proprietary. This mismatch creates licensing uncertainty despite the detected license text.
The artifact contains only three files, including one header and the manifest. This may be appropriate for a small plugin, but it provides little transparency into implementation or maintenance.
The package has no README, leaving consumers without in-package usage guidance. Missing tests and a changelog are normal for published artifacts and do not add concern here.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
intaglio/nuclio-core Version 1.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.