Risky to adopt: this package has had only one release, in April 2016, with no releases since and no repository push since June 2016. It remains licensed, documented, and backed by the matching organization repository, but its long inactivity makes abandonment a serious concern.
42%
Total Score
100
100
67
50
The package has exactly one release, v0.1.0, and none in the last 12 months; the release is more than 10 years old, which is strong evidence of abandonment risk despite the repository still being available.
The linked repository is not archived, which keeps the project technically available, but its last push was in June 2016 and does not offset the release history's long inactivity.
The repository has no security policy, which leaves vulnerability reporting and handling undocumented; this is a transparency gap, though the package's main concern remains its prolonged inactivity.
The only published version is v0.1.0 and is not a stable major release, leaving limited evidence of maturity; there is no later release history to compensate for that uncertainty.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.