The stable release and matching source repository provide useful context, but the project offers little evidence of current support. Pinning this version leaves you dependent on software that has not received updates since 2016.
32%
Total Score
0
60
75
The package has only one release, published nearly 10 years ago, with no releases in the last 12 months. That strongly limits evidence of ongoing maintenance.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the package's long-standing lack of releases and indicating abandonment risk.
No declared license, license file, or repository license file was detected. This creates a material adoption and redistribution concern.
The repository is not archived, which is a modest compensating signal, but its last push was nearly 10 years ago and does not offset the stale activity.
The repository has no security policy. For an old package with no recent maintenance, the lack of a documented vulnerability-reporting path adds transparency risk.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.