The small artifact is clearly licensed, documented, and has no install-time scripts. Its long-standing lack of maintenance and weak repository connection make future fixes and ownership uncertain; use only if its narrow, stable functionality fits your needs.
40%
Total Score
0
100
79
75
The package has had no releases in more than 10 years: all eight releases occurred in July 2016, with none in the last 12 months. This is strong evidence of abandonment, although the narrow scope may explain some stability.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the release history and leaving no evidence of current maintenance capacity.
The linked repository name does not match the package name and its README does not mention the package. This weakens confidence that the repository is the package's maintained home.
The repository has no security policy. For an old, inactive library this leaves vulnerability-reporting expectations unclear, adding a transparency gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.