The package includes tests, a changelog, examples, and a matching MIT license. The missing security policy and absent package mention in the README reduce transparency, although organization backing and a clean dependency profile provide some support.
42%
Total Score
50
100
80
50
The package is 2460 days old, has 11 releases, and has had no release in the last 12 months; its latest release was on December 26, 2019. This is strong evidence of abandonment risk despite the package not being deprecated.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the long gap since the last release. This materially lowers confidence that defects or compatibility issues will be addressed.
The repository name matches the package, but its README does not mention the package name. That weakens evidence that the linked source clearly identifies and documents this package.
The linked repository has no security policy, leaving no documented channel or process for reporting vulnerabilities. This is a transparency gap for a server SDK.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.