The package has a usable README, tests, and a stable release history. Its source project shows no recent maintenance, and the release has no declared or detected license, leaving adoption poorly supported.
18%
Total Score
0
71
100
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the archived state and providing no evidence of ongoing maintenance.
The linked repository is archived, with its last push on October 24, 2023; archived projects are a severe abandonment risk for a dependency.
No license is declared, and neither the package nor repository contains a recognized license file. This leaves the legal terms for using the dependency unclear.
The package has 50 releases over nearly eight years, but none in the last 12 months; the long release gap weakens confidence that defects or compatibility issues will be addressed.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
tedivm/jshrink Version ^1.3.3 | — | — |
scssphp/scssphp Version ^1.11.0 | — | — |
dflydev/dot-access-data Version ^1.1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.