A security policy, readme, matching repository, and minimal runtime dependency profile improve transparency and ease of use. Recent activity comes from one contributor, so maintenance capacity is concentrated despite the current release evidence.
82%
Total Score
63
100
100
100
The package repository is owned by a user rather than an organization, so the concentrated maintainer and contributor activity is not offset by visible organizational backing.
All recent commits came from one contributor, concentrating maintenance capacity and increasing continuity risk.
There was one commit in the last 3 months, so activity is present but limited in volume.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.