The package has one maintainer, no security policy, and no consumer README. Its minimal source tree and clean install settings reduce exposure, but the project shows little evidence of ongoing care.
42%
Total Score
50
56
83
This is a 1,630-day-old package with only one release and none in the last 12 months, indicating strong abandonment risk.
A single registry maintainer provides limited continuity if that person stops maintaining the package, with no organization backing shown to compensate.
The published artifact has no README, while tests and a changelog are not expected in a package artifact; the missing consumer documentation is a minor usability gap.
The repository name does not match the package name, and no README mention was available, so ownership of the published package is less transparent.
The repository has zero stars and forks and one watcher, offering no meaningful supporting evidence of community review or adoption.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.