The package is small and easy to inspect, with no install-time scripts or workflow findings. Missing licensing, tests, security policy, and recent maintenance leave adoption unsupported, while the linked repository may not clearly belong to this package.
32%
Total Score
0
56
83
There has been only one release, published more than 10 years ago, with none in the past 12 months. This is strong evidence that the package is no longer actively maintained.
The repository recorded zero commits and zero active maintainers during the past three months, consistent with the package's long absence of releases and indicating little ongoing maintenance capacity.
Neither the package nor the linked repository declares or contains a recognized license. That creates a material adoption and redistribution risk for an open-source dependency.
The package has no README, but it does provide release notes for this exact version. The missing README is a minor consumer-documentation gap for an API client, while absent tests and changelog files are normal for a published artifact.
The repository name does not match the package name, and no README package mention was collected. The repository may not clearly be the source for this package, reducing transparency.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.