Clear licensing, tests, and a minimal dependency footprint support straightforward adoption. Organizational repository backing and a matching source project offset the single registry maintainer, while missing security documentation leaves a modest transparency gap.
65%
Total Score
50
100
80
75
Only one account has registry publishing access, which creates some continuity risk; the organization-owned repository provides partial compensation for that thin registry base.
The package is about 2.9 years old but has only 3 releases, with a median interval of about 12 months and just 1 release in the last 12 months; this indicates slow maintenance.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, which is a concrete sign of currently limited maintenance activity.
The linked repository has no security policy, reducing transparency about vulnerability reporting and response expectations.
Version 0.2.0 is not a stable major release, although it is not marked as a prerelease and recent releases contain no prerelease versions. This limits maturity confidence without making the package unfit.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
next/utils Version ~0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.