Its README is still a boilerplate template, and the repository has no tests or security policy. MIT licensing and a minimal dependency surface are positives, but they do not offset the maintenance concerns.
35%
Total Score
0
100
75
75
This package has only one release, published in April 2023, with no releases in the last three years. That provides strong evidence of abandonment risk.
The repository recorded no commits and no active maintainers in the last three months, consistent with the long release gap and indicating no current maintenance capacity.
A README is present, but it remains largely boilerplate with placeholder description and usage text; the repository also has no tests. Missing tests are not inherently a packaging gap, but the incomplete documentation reduces transparency for consumers.
The repository has no security policy, leaving no documented reporting process for vulnerabilities. This is a moderate transparency gap for a package that handles shipping-service integrations.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.