The small artifact is easy to inspect, and MIT licensing plus no install scripts reduce adoption friction. Documentation is only a heading, while the repository has no security policy or scanning support.
31%
Total Score
0
100
57
75
The latest release was in December 2017, with no releases in the last 12 months and only two releases overall. That long silence is strong evidence of abandonment for a package developers would depend on.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release history and leaving little evidence of ongoing maintenance.
The package contains a README, but it is only 14 characters and provides no useful integration guidance. Missing tests and changelog files in the published artifact are normal packaging practice, while the repository supplies no stronger documentation evidence.
The linked repository name does not match the package name and its README does not mention the package. Although name differences can occur in subpackages, both signals together make package ownership less transparent.
The repository has zero stars, one fork, and one watcher. Popularity is only supporting evidence, but these counts provide no meaningful community or maintenance signal to offset the inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
raptek/regon Version 0.2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.