The four-file library has no tests or security policy, limiting confidence in future changes. Stable versioning and a matching repository provide useful transparency.
52%
Total Score
75
72
75
The manifest declares a proprietary license, so the release is licensed, but its reuse terms may restrict adoption compared with a standard open-source license.
The package includes a readable README and the exact version has a GitHub release, which helps consumers understand installation and use. Tests and a changelog are absent from both the artifact and repository, limiting validation and release traceability for this library.
The package has made no release in nearly three years, with only five releases overall and none in the last 12 months. This materially raises abandonment risk despite its stable version.
The repository recorded zero commits and zero active maintainers in the last three months, showing no recent maintenance activity. The repository is not archived, but this does not offset the prolonged inactivity.
The repository has zero stars and forks and only one watcher, indicating very limited visible community adoption. This is supporting evidence rather than a standalone health verdict, but it provides little external maintenance signal.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.