Mar 3, 2026 at 7:21 AM6 signals analysed100 commits (90d)No manual reviews · fully automated
Trust Signal Breakdown
high3 sub-signals across 6 dimensions

CVEs, dependency health, and supply chain integrity

3 of 3 sub-signals with data

Known CVEs40%5.0

1 CVE(s) found — 0 unpatched

via OSV.dev

Dependency Health30%5.0

4 dependencies (minimal)

via npm / PyPI

Supply Chain30%5.0

Supply chain analyzed, no transitive CVEs

via npm provenance

Uptime, latency, error rates, and incident history

0 of 0 sub-signals with data

Commit recency, release cadence, issue response, CI/CD

0 of 0 sub-signals with data

Downloads, stars, dependents, and growth trajectory

0 of 0 sub-signals with data

License, documentation, security policy, changelog

0 of 0 sub-signals with data

Track record, org maturity, community standing

0 of 0 sub-signals with data

About this score
Scored across 3 sub-signals in 6 dimensionsScoring engine v1 (beta) — actively being expandedPhase 1: Core sub-signal architecture (live)Phase 2: Permission scope & expanded collection (in progress)
Trust AssessmentAI Assessment

AI SDK by Vercel - The AI Toolkit for TypeScript and JavaScript

Package Availability (30d)
100.00%
p50: 108ms · p99: 133ms
Avg Latency
103ms
averaged across 30d health checks
Weekly Downloads
8.5M-6%
npm weekly
Transparency & Compliance2/6 passed
Open Source CodePublic repository on GitHub
OSI LicenseNo recognized open-source license
DocumentationREADME with examples/code blocks
SECURITY.mdNo security policy found
API DocumentationNo API documentation detected
Model / System CardNo model card found
Incidents & Alertslast 90 days
Mar 1Trust score decreased by 0.963.24
Feb 26Trust score increased by 0.824.20
Feb 21ai added to Trust Index2.67
Showing 3 of 3 events
Score History19 snapshots
5.003.752.501.250.00
Feb 21Mar 1
Community & Ecosystemadoption signals
8.5M
Weekly Downloads
npm
100
Commits (90d)
ai
10
Releases
on GitHub
Supply Chain & Dependenciestrust chain
@ai-sdk/gateway
npm · 3.0.53
@ai-sdk/provider
npm · 3.0.8
@ai-sdk/provider-utils
npm · 4.0.15
@opentelemetry/api
npm · 1.9.0
Showing 4 of 4 dependencies
Data Sources6 indexed
Version Historyscore per release
VERSIONRELEASEDSCOREDELTA
@ai-sdk/azure@3.0.35Feb 26, 20264.20
@ai-sdk/openai@3.0.34Feb 26, 20264.20
@ai-sdk/togetherai@2.0.34Feb 25, 20264.20
@ai-sdk/langchain@2.0.106Feb 25, 20264.20
@ai-sdk/react@3.0.102Feb 25, 20264.20
@ai-sdk/llamaindex@2.0.100Feb 25, 20264.20
Showing 6 of 10 releases

Are you the publisher?

Claim this profile to unlock deeper evaluation, real-time monitoring,
and trust signals that help agents discover your service.

Share this Trust Score

Generate a scorecard image optimised for X, LinkedIn and other social platforms.

⬇ Download Score Card