Its MIT license is present, and the repository is still owned by an organization. The release has no install scripts, but its single maintainer and absent security policy leave little operational reassurance.
42%
Total Score
50
58
75
This is the only release, published about 35 months ago, with no releases in the last 12 months. That indicates a project with little demonstrated ongoing maintenance.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and raising abandonment risk.
An MIT license file is present in both the artifact and repository, but the manifest declares the package as proprietary. That mismatch creates avoidable licensing uncertainty.
Only one registry publishing maintainer is listed. The organization-owned project backing makes a short registry maintainer list less concerning, but it does not demonstrate active maintenance.
The package has no README, tests, or changelog. Missing tests and changelog are normal for published artifacts, but the absent README reduces consumer transparency for this library.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
quantaforge/contracts Version ^1.0.0 | — | — |
quantaforge/macroable Version ^1.0.0 | — | — |
quantaforge/conditionable Version ^1.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.