The MIT declaration and absence of install-time scripts reduce licensing and installation concerns. Documentation, testing, security-policy, and repository-popularity signals are limited, making long-term maintenance harder to assess.
40%
Total Score
33
72
75
The package has made no release in more than five years, with all five releases concentrated on 19 April 2021. This is strong evidence of abandonment risk despite the package not being deprecated.
There have been no commits and no active maintainers in the last three months, consistent with the repository's last push in April 2021 and indicating sustained inactivity.
Only one registry maintainer is listed, leaving little visible publishing redundancy for a project already showing no recent releases.
A GitHub release exists for this version, but the package and repository have no README, tests, or changelog. Missing tests and changelog are normal packaging practice; the absent README is a minor documentation gap for a library.
The repository is user-owned rather than organization-backed, and the available backing evidence shows only a small independent project. That provides little redundancy against maintainer loss.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.