The package has a minimal README, no tests, and no security scanning, which limits confidence for a library dependency. Its small dependency set and matching repository reduce complexity, but the project appears abandoned and should be replaced or forked if ongoing maintenance matters.
38%
Total Score
50
100
61
88
The last release was in May 2020, with no releases in the past 12 months despite a package age of about 7 years; this is strong evidence of abandonment risk.
There were no commits and no active maintainers in the last three months, consistent with a project that has been inactive since May 2020.
No license is declared, detected, or included in the package or repository, leaving developers without clear permission to use or redistribute the code.
Only one registry publishing account is listed, which creates a thin publishing base and increases continuity risk for a package that already shows no recent activity.
The artifact contains a README, but it is only 13 characters long and there are no tests or changelog; the absent tests and changelog are normal packaging practice, while the minimal consumer documentation is a real gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
yoterri/com Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.