The single-maintainer project has no recent repository activity or security policy. It is small and clearly packaged, with a license, README, changelog, and no install-time scripts.
58%
Total Score
50
100
83
75
One registry maintainer is responsible for publishing the package, creating a limited continuity base for a user-owned project.
The latest release was about 20 months ago, and there were no releases in the last 12 months. Its earlier releases were frequent, so this indicates a recent maintenance slowdown rather than long-term inactivity.
The repository recorded zero commits and zero active maintainers in the last 3 months, providing no evidence of current maintenance capacity.
The linked repository has no security policy. This is a transparency gap for reporting and handling vulnerabilities, although the package is small and has a simple dependency profile.
Version 0.0.13 is not a prerelease, but the package remains below 1.0, which suggests a less mature compatibility commitment.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.