The repository is not archived and the package has a clear README and MIT declaration. Its single-maintainer, pre-1.0 status leaves little evidence of ongoing support.
36%
Total Score
50
79
100
One registry maintainer is consistent with a small user-owned project, but it provides little redundancy if that maintainer is no longer active.
This is the package's only release, published about 6 years and 9 months ago, with no releases in the last 12 months. That strongly indicates abandonment risk.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the absence of newer releases and providing no evidence of current maintenance.
The repository name matches the package, which supports ownership, although the README does not mention the package name. This is a minor transparency concern rather than evidence of a mismatched repository.
The package remains at pre-1.0 version v0.1.0. Combined with its long inactivity, this leaves compatibility and support expectations uncertain.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.