Usable with caveats: the release is clearly documented, tested, licensed, and backed by a matching organization repository, but it is brand new with only two releases within about 8 minutes and no established commit history yet.
65%
Total Score
75
100
93
83
The package is 0 days old and has only two releases, published about 8 minutes apart. This provides too little history to establish dependable maintenance or release practices.
There were no commits and no active maintainers during the last three months. Because the package is only 0 days old and the repository was pushed recently, this is an immature history rather than strong evidence of abandonment, but it still leaves maintenance capacity unproven.
The repository has no published security policy. This is a transparency gap, although the package's very recent creation and otherwise visible source structure partly limit its significance.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.