Its MIT license and matching source are clear, and it has no install-time scripts. The small user-maintained project has no security policy, so fixes and support are uncertain.
38%
Total Score
25
70
75
The package has only one release, published in June 2016, with no releases in roughly 10 years. That is strong evidence of abandonment for a library dependency.
The repository recorded zero commits and zero active maintainers during the last three months, consistent with the long release gap and leaving current maintenance unverified.
One issue remains open, with no issues or pull requests resolved in the last month. This is limited evidence by itself, but it provides no sign of active support.
The repository has only 2 stars and no forks, indicating a very small user and contributor base. Popularity is supporting evidence rather than a verdict, but it offers little compensating maintenance capacity.
The repository has no security policy, reducing transparency about how vulnerabilities should be reported. The package's age and inactive maintenance make this gap more consequential.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.