Risky to adopt: the package has had no release or repository activity for nearly six years, with no security policy and very little community evidence. It is clearly licensed, documented, and not deprecated or archived, but the long-term maintenance risk is substantial.
45%
Total Score
0
79
75
Only two releases were published, with the latest on September 2, 2020 and none in the following nearly six years. That is a substantial maintenance and compatibility risk for an authentication library.
The repository recorded zero commits and zero active maintainers during the last three months, consistent with the long period since the last release and indicating no visible ongoing maintenance.
The repository has zero stars and forks and only one watcher, providing little supporting evidence of community review or continued use. Low popularity alone is not decisive, but it reinforces the maintenance concern.
The repository has no security policy. For an authentication package, the absence of a documented vulnerability-reporting path is a meaningful transparency gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.