The four-file package has a clear README, an MIT declaration, no install-time scripts, and a matching organization-backed repository. There is no repository security policy, leaving maintenance expectations less clear.
52%
Total Score
75
100
80
75
The latest release was published in October 2012, nearly 14 years before collection, and there were no releases in the last 12 months. The four historical releases show an established package but do not offset the very long release gap.
The repository had no commits and no active maintainers in the last 3 months. A push in March 2024 shows it is not entirely abandoned, so this is a caution rather than a severe abandonment finding.
The linked repository has no security policy. That weakens vulnerability-reporting transparency for a package handling OAuth authentication, although it does not by itself show the code is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
opauth/opauth Version >=0.2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.