It has a readable installation guide, an MIT license file, and no install-time scripts. Its small, single-maintainer project offers little support if compatibility problems arise, and the absent security policy reduces transparency.
38%
Total Score
25
79
75
The package has only two releases, both published on the same day in 2015, and none in the last 12 months. This long-standing lack of releases is a substantial maintenance concern.
The repository recorded no commits and no active maintainers in the last three months, consistent with the package's long period without releases and indicating likely abandonment.
A single registry maintainer is a thin publishing base. The repository is user-owned rather than organization-backed, so there is little visible redundancy if that maintainer stops responding.
The repository has zero stars and forks and only one watcher. Popularity is not decisive by itself, but these counts provide little supporting evidence of an active user or contributor community.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a transparency gap, though it is less serious than the maintenance evidence.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.