The repository has tests, release notes, Dependabot, and a matching project, while its tiny audience limits external evidence. The lack of recent releases and commits makes future fixes and maintenance uncertain.
58%
Total Score
83
100
89
88
The package has had no registry release in more than two years, despite nine releases overall; this is meaningful evidence of slowed maintenance for a library dependency.
There were zero commits and zero active maintainers in the last three months, which materially increases the risk that defects or compatibility changes will go unattended.
The repository has zero stars and forks and one watcher, so there is little external adoption evidence to offset the quiet maintenance record.
The repository has no security policy, leaving vulnerability-reporting expectations unclear; this is a transparency gap, though it is not severe on its own.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.