The MIT declaration and absence of install-time scripts reduce avoidable integration risk. The source is minimal and has seen no maintenance since its sole 2015 release, so depending on it carries substantial abandonment risk.
34%
Total Score
50
64
67
This package has only one release, published in November 2015, with no releases in the last 12 months. That long period without a new release is strong evidence of abandonment risk.
The repository had zero commits and zero active maintainers in the last three months. Combined with the last push in 2015, this indicates no current maintenance capacity.
The artifact and repository each contain only three files, including one source file and no apparent consumer documentation or supporting project files. This makes the package difficult to evaluate and suggests a very limited project.
The package has no README, tests, or changelog. Missing tests and changelog are normal in published artifacts, but the missing README is a real transparency and integration gap for a library.
The repository is not archived, which is a modest positive, but its last push was in November 2015 and does not offset the absence of subsequent maintenance.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.