The project has seen no recent commits and only one release since 2021, leaving maintenance uncertain. Its small, focused artifact has a usable README and limited dependencies, but no tests or security scanning reduce confidence in ongoing support.
42%
Total Score
25
100
63
75
The package has only one release, published about 4 years and 11 months ago, with no releases in the last 12 months. That is strong evidence of stagnation for a dependency, despite the package not being deprecated.
The repository recorded zero commits and zero active maintainers in the last 3 months, and its last push was in December 2023. This substantially increases abandonment risk, with no recent activity to compensate for it.
The artifact includes a readable README, which supports consumers, but it contains no tests or changelog. Missing tests are a real maintenance gap here because no other signal demonstrates ongoing validation, while the absent changelog is minor for this single-release package.
The repository is owned by an individual user rather than an organization, so the small registry maintainer base is not explained by organizational backing. This provides little resilience against abandonment.
The repository has zero stars, forks, and watchers, providing no supporting evidence of community adoption or review. Popularity is not required for health, but this leaves the stale maintenance picture uncorroborated.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.