There is no README or security policy, limiting documentation and vulnerability reporting for a library consumers must integrate. The MIT license and small dependency set are positives, but the source repository does not identify the package and all recent commits come from one maintainer.
50%
Total Score
50
100
50
75
The linked repository is named “verbose-doodle” rather than the package, and no README package mention was found, creating a meaningful concern that the source may not actually belong to this package.
The artifact has no README, tests, or changelog. Missing tests and changelog are normal for published artifacts, but the absent README is a documentation gap for a client library.
This is a new package with one release, published 60 days ago, so there is too little history to establish mature maintenance or long-term stability.
One contributor made all four commits in the last three months, leaving maintenance dependent on a single person without organizational backing.
Four commits in the last three months show some activity, but the small amount of observed work provides limited evidence of sustained maintenance.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
php-webdriver/webdriver Version ^1.15 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.