Usable with caveats: the package is well-documented, licensed, tested, and backed by an unarchived repository, but the published release is nearly four years old and the repository shows no commits or issue activity recently.
62%
Total Score
67
89
83
The package has 16 releases since 2016, but its latest release was nearly four years ago and it had no releases in the last 12 months. This materially increases the risk that published updates have stalled.
The repository recorded zero commits and zero active maintainers over the last three months. Together with the old latest release, this is a meaningful maintenance concern.
There were no new or closed issues and no pull requests merged in the last month, suggesting limited recent project activity.
No build tools or security scanning tools were detected. This is a transparency and process gap, but the repository still exposes source, tests, and build-related configuration, limiting the severity.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.