Integration guidance is minimal, and the project offers no security process. The repository is not archived, but the long release and commit gap makes ongoing support uncertain.
42%
Total Score
0
38
75
No declared license, license file, or repository license file was detected. This creates a material adoption and redistribution risk for an open-source dependency.
The package has had only one release, published about two years and four months ago, with no releases in the last 12 months. This is strong evidence of limited ongoing maintenance.
The repository recorded 0 commits and 0 active maintainers in the last three months, consistent with the stale release history and raising abandonment risk.
The artifact includes a README, but it is only 10 characters long and provides virtually no integration guidance. Missing tests and a changelog are normal for a published artifact and are not counted as gaps.
The repository has no security policy, leaving no documented channel or process for reporting vulnerabilities. This is a transparency and maintenance gap, though it is not severe enough to make the release unfit by itself.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.