Apache-2.0 licensing and a single runtime dependency make adoption straightforward. The repository has no security policy or security-scanning tools, limiting transparency, while organizational backing provides some continuity.
72%
Total Score
83
100
100
50
All 35 recent commits came from one contributor, giving the project a bus factor of one. Organization backing partly compensates for this, but succession and continuity remain a real concern.
The repository has no security policy and no security-scanning tools were reported. This weakens vulnerability-reporting and security-transparency practices, though it does not outweigh the strong release and maintenance evidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
tencentcloud/common Version >=3.0.1672 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.