The project has one active contributor and no published security policy. Organization backing and a very small dependency footprint provide some support.
62%
Total Score
83
100
75
50
Only three releases exist, with no registry release in over four years and a long median interval between releases. Recent repository activity partly offsets the abandonment concern, but the published version may be stale.
All two recent commits came from one contributor, creating a concentrated maintenance risk. The organization-owned repository provides some handoff capacity, but no second active contributor is shown.
No security policy is present in the linked repository, reducing transparency for reporting and handling vulnerabilities. The small package scope does not remove this maintenance concern.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.