The eight-file artifact has a usable README, matching source repository, MIT license, and no install-time scripts. Its limited tooling and small audience provide little evidence of ongoing maintenance or review capacity.
42%
Total Score
0
100
71
75
The latest release was published on September 9, 2020, and there have been no releases in the last six years. Eight releases indicate an established initial history, but the prolonged release gap is a strong abandonment concern.
The repository had zero commits and zero active maintainers in the last three months, consistent with the last push occurring in September 2020. This provides no evidence of current maintenance.
The repository has one star, zero forks, and one watcher, indicating very limited adoption and external validation. Popularity is supporting evidence rather than decisive proof, but it reinforces the weak maintenance picture.
Composer is used as the build tool, which fits the package ecosystem, but no security scanning tools are configured. The missing scanning is a hygiene gap rather than evidence that the release is unsafe.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This matters more because the project also shows no recent maintenance activity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nubs/vectorix Version ^1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.