Documentation, tests, licensing, and a minimal dependency footprint make adoption straightforward. Maintenance capacity remains narrow, and the project has no published security policy.
68%
Total Score
50
100
92
50
The package has nine releases since 2014, but its latest registry release was over four years ago and there were no releases in the last 12 months. This raises maintenance and freshness concerns.
All recent repository commits came from one contributor, leaving maintenance dependent on a single person. The repository is user-owned rather than organization-backed, so there is no provided organizational compensation.
The repository recorded one commit from one active maintainer in the last three months, showing some current activity but not a strong maintenance cadence.
The linked repository has no published security policy. This does not prove a security problem, but it weakens the project's transparency for reporting and handling vulnerabilities.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.