Its single release dates back nearly ten years, with no recent commits or active maintainers. The license file and non-archived repository help, but zero project popularity and no security policy leave little maintenance assurance.
30%
Total Score
0
69
50
The package has made only one release, on September 5, 2016, and none in the past 12 months. This is strong evidence of abandonment risk for a dependency released nearly ten years ago.
There were zero commits and zero active maintainers in the past three months, consistent with a repository that has not been pushed since 2017. This materially raises abandonment risk.
A README is present and the repository uses GitHub releases; missing tests and a changelog are normal for published artifacts and are not counted as gaps here. However, the README describes TwitterOAuth rather than this package, limiting its consumer value.
The repository name does not match the package name and its README does not mention the package. This raises uncertainty about whether the linked source repository actually belongs to this release.
The linked repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but these values provide no visible community or adoption support for an otherwise inactive package.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.