The MIT license is clear, and installation has no lifecycle scripts. The small, coherent source tree is backed by an organization, but documentation and project safeguards remain limited.
62%
Total Score
75
75
75
The artifact has no README, which is a meaningful documentation gap for a library consumers must integrate. The missing tests and changelog are not concerns here because they belong in the repository or are commonly omitted from published artifacts.
The package is 0 days old with only 2 releases, so there is no demonstrated release track record yet. Its freshness explains the absence of history but does not establish ongoing maintenance.
The repository shows 0 commits and 0 active maintainers in the last 3 months. Because the package is only 0 days old, this is limited evidence rather than proof of abandonment, but maintenance history is not yet demonstrated.
The repository uses Composer for its build ecosystem, which fits the package source. No security scanning tools were detected, leaving a modest process gap.
The repository has no security policy, so there is no documented channel or process for handling vulnerabilities. This lowers transparency but is not severe on its own.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
venusian-surface/contracts Version ^0.8.0 | — | — |
venusian-voyager/contracts Version ^0.8.0 | — | — |
venusian-surface/framebuffers Version ^0.8.0 | — | — |
venusian-voyager/magic-aliases Version ^0.8.0 | — | — |
venusian-voyager/nuts-and-bolts Version ^0.8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.