Library of common interfaces and traits for Applications
58%
Total Score
caution
Usable with caveats: no commits or releases for about 19 months is the main concern.
The package runs a post-install-cmd script, adding install-time behavior that consumers must account for. No provided signal shows that this hook is unsafe, so this is a modest hygiene concern rather than a severe risk.
Only one registry account has publish access. Because the repository is user-owned rather than organization-owned, the narrow publishing base is a genuine continuity concern, although it does not measure actual contribution activity.
The registry namespace and repository are owned by the same individual account. This confirms ownership alignment, but it does not provide organizational backing or a broader maintenance base.
The package is about 19 months old but has had no releases in the last 12 months, with only three releases overall. That suggests a small or inactive release cadence and lowers confidence in ongoing maintenance.
The repository recorded zero commits and zero active maintainers over the last three months. Combined with the long interval since the last push, this is meaningful evidence of currently inactive maintenance.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.