The repository still has tests, a changelog, clear organization backing, and a matching package source. Its workflow references are entirely unpinned, and it lacks a security policy, adding maintenance and release-hygiene concerns.
48%
Total Score
50
100
81
50
This is the only release, published about 8 years ago, with no releases in the last 12 months. That strongly limits evidence of ongoing compatibility and maintenance.
There were no commits and no active maintainers in the last 3 months. This is a significant abandonment concern for a package with no newer releases.
There are three open issues but no issues or pull requests were opened or closed in the last month, providing no evidence of active issue resolution.
The repository has no security policy. For a dependency with no recent release or commit activity, this is a meaningful transparency gap.
Version 0.1.0 is not a stable major release, although it is not marked prerelease. Combined with the lack of subsequent releases, this leaves maturity uncertain.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nailsapp/common Version dev-master | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.