The package includes tests, a readable guide, and matching MIT licensing, with a repository that clearly belongs to it. Oversight is limited by one registry publisher and no security policy, while the long maintenance gap remains the main concern.
58%
Total Score
75
100
83
75
The registry lists one publisher, which limits publishing redundancy, though the repository is owned by an organization and therefore provides some backing.
Only two releases were published, both in September 2019, with none in the last 12 months; this indicates a long maintenance gap despite the stable 1.0.0 version.
The repository is not archived, but it was last pushed in October 2019, so it shows no recent source activity to offset the old release history.
The linked repository has no security policy, reducing transparency for reporting and handling vulnerabilities in an API client.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.