The tiny repository has one star and no security policy. MIT licensing, a README, and no install-time scripts help, but the project needs replacement or careful ownership review before adoption.
38%
Total Score
50
67
75
The package has had no release in more than seven years; its latest release was July 2019, with zero releases in the last 12 months. This is strong evidence of abandonment for a dependency.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the last push occurring in July 2019. This leaves little evidence of current maintenance capacity.
The repository has only 1 star and 1 fork, providing little supporting evidence of community review or continued adoption. Low popularity alone is not disqualifying, but it compounds the inactivity concern.
The repository has no security policy. This is a transparency and response-process gap, especially concerning for a package that integrates with an API.
Version 0.0.7 is not a stable-major release, which signals limited maturity. Its non-prerelease status avoids an additional warning, but does not offset the long period without releases.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
seams-cms/delivery-sdk Version ^0.0.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.