The small artifact has clear usage documentation, release notes, an MIT declaration, and no install-time scripts. Its very limited project footprint and absent security tooling leave little evidence that it remains dependable.
40%
Total Score
50
100
64
67
The latest release was in April 2019, with no releases in the last 12 months and only three releases overall. This long period without updates is a substantial abandonment concern for a package integrating external email, proxy, database, and Redis services.
The package has one registry maintainer. A single maintainer can be sufficient for a small package, but here it offers little redundancy alongside the stale release history.
The package contains only four files: a README, manifest, and two source files. That compact structure is not inherently unsafe, but it provides little evidence of broader maintenance or validation.
The repository is owned by an individual account rather than an organization. Combined with one registry maintainer and no visible recent activity, this provides limited evidence of sustained project backing.
The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these values provide no additional adoption or maintenance signal.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.