The four runtime dependencies add maintenance surface, while the repository has no security tooling. MIT licensing, a README, and no install scripts are positives.
58%
Total Score
50
88
75
The package declares four runtime dependencies, including session, cookie, and ORM components, which increases the maintenance and compatibility surface. No compensating dependency evidence was provided.
Only one release exists, published about 1 year and 8 months ago, with no releases in the last 12 months. This is meaningful evidence of limited ongoing maintenance.
The repository has 1 star, 0 forks, and 1 watcher, providing little independent evidence of maturity or broad review. Low popularity alone is not a severe concern for a small package.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This is a modest transparency gap for an authentication library.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
natilosir/orm Version ^1.0 | — | — |
natilosir/cookie Version ^1.0 | — | — |
natilosir/jalali Version ^1.0 | — | — |
natilosir/session Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.