The MIT license and single runtime dependency reduce adoption friction. Its two-release history, minimal README, and repository mismatch leave maintenance and package ownership insufficiently demonstrated.
48%
Total Score
50
50
The repository name does not match the package name and its README does not mention the package, so the repository's ownership of this package is not clearly demonstrated.
A README is present but only 72 characters long, providing little guidance for a framework consumer. Missing tests and changelog files are normal for a published artifact and are not concerns here.
Only two releases exist, both within about 7 hours, and the package is 78 days old; this shows an initial burst but not sustained maintenance.
The repository has zero stars, forks, and watchers. Popularity is supporting evidence rather than a verdict, but there is no community adoption signal to offset the package's limited history.
The linked repository has no security policy, reducing the transparency of vulnerability reporting for a framework package.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.