The project has a clear README, tests in the repository, a license, and a recent release, but its small maintainer base and quiet recent development reduce confidence in ongoing support. The workflow also uses two unpinned actions and has no security policy.
68%
Total Score
50
100
94
83
Only one account has registry publishing access. This is a limited maintenance depth for a user-owned project, although the linked repository shows that the same owner maintains the source.
The package and repository are owned by the same individual account, providing a consistent ownership link but no organizational maintenance backing.
The package has existed since June 2019 with 13 releases and one release in the last 12 months, showing continued publication but a relatively infrequent cadence.
The repository recorded zero commits and zero active maintainers during the last three months, indicating a recent pause in development and increasing abandonment risk.
There are no open issues or pull requests, and no recent issue or pull-request activity. This is compatible with a small stable project but provides little evidence of active support.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.