The package includes a clear MIT license, tests, a useful README, and no install-time scripts. Maintenance appears dormant: the last repository push was in February 2020, with no releases in the past 12 months and nine open issues.
58%
Total Score
50
100
75
75
The package has had no release in the past 12 months, and its latest release dates to August 2017. This indicates prolonged release inactivity for a package that integrates with an external service.
The repository has nine open issues, no open pull requests, and no issue or pull-request activity in the past month. Together with the old last push, this suggests unresolved maintenance needs.
The repository is not archived, which preserves a path for maintenance, but its last push was in February 2020. The long gap materially raises abandonment risk.
The repository has no security policy. This is a transparency and reporting gap, though the available maintenance signals are more important to the overall assessment.
Version 0.2.0 is not a stable major release, so the public API may still change. This is a moderate maturity concern rather than evidence that the package is unfit.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
kevinem/oauth2-adobe-sign Version ^0.1.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.