Clear documentation, tests, and a recent release provide useful evidence of a maintained library. Its very small maintainer base, no commits in three months, and unpinned workflow actions leave meaningful ongoing-maintenance and build-integrity concerns.
68%
Total Score
50
100
81
75
The package and repository are owned by the same individual account rather than an organization, so the one-person registry maintainer base reflects limited project backing rather than normal organization publishing hygiene.
The package has four releases over about three and a half years, with one release in the last 12 months and the latest published about 10 months ago. This indicates slow but not abandoned release activity.
There were zero commits and zero active maintainers in the last three months. With only one registry maintainer, this is a meaningful sign of limited current maintenance capacity.
There are no open issues or pull requests, and no issue or pull-request activity in the last month. This is consistent with a small, quiet project but provides no evidence of active community maintenance.
The repository has one star and no forks, showing a very small user and contributor footprint. Popularity is supporting evidence rather than a verdict, but this offers little evidence of broad community resilience.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.