The license metadata conflicts with the MIT file, and the six-file artifact offers little consumer documentation. Its stable version and minimal dependency footprint reduce adoption friction, but not the long-term maintenance concern.
35%
Total Score
100
60
100
The package has had no release in nearly 10 years, with zero releases in the last 12 months. This is strong evidence of abandonment risk despite its earlier regular release interval.
The manifest declares the package proprietary, while the artifact contains an MIT license file. The file provides licensing evidence, but the mismatch creates a meaningful transparency and reuse concern.
The artifact includes release notes and no tests, which is normal for a small published library, but it has no README to explain integration. That documentation gap mildly reduces consumer confidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
intaglio/nuclio-core Version 1.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.