2.54/ 5.00
cautionBeta
Mar 5, 2026 at 7:49 AM6 signals analysedNo manual reviews · fully automated
Trust Signal Breakdown
medium23 sub-signals across 6 dimensions

CVEs, dependency health, and supply chain integrity

2 of 3 sub-signals with data

Known CVEs57%4.7

3 CVE(s) found — 0 unpatched

via OSV.dev

Dependency Healthno data

Weight redistributed to sub-signals with data

Supply Chain43%4.8

30 transitive CVEs found (penalty: -0.25)

via npm provenance

Uptime, latency, error rates, and incident history

4 of 4 sub-signals with data

Uptime35%5.0

100.00% over 5 checks

via Health checks

Response Latency25%5.0

p99: 61ms, p50: 32ms

via Health checks

Error Rate20%1.0

60.00% error rate (3/5)

via Health checks

Incident History20%4.0

1 incidents in last 90 days

via Incidents table

Commit recency, release cadence, issue response, CI/CD

0 of 4 sub-signals with data

Commit Recencyno data

Weight redistributed to sub-signals with data

Release Cadenceno data

Weight redistributed to sub-signals with data

Issue Responseno data

Weight redistributed to sub-signals with data

CI/CD Presenceno data

Weight redistributed to sub-signals with data

Downloads, stars, dependents, and growth trajectory

1 of 4 sub-signals with data

Download Volume100%5.0

25,905,193 weekly downloads

via npm / PyPI

GitHub Starsno data

Weight redistributed to sub-signals with data

Dependent Packagesno data

Weight redistributed to sub-signals with data

Growth Trendno data

Weight redistributed to sub-signals with data

License, documentation, security policy, changelog

0 of 4 sub-signals with data

Open Sourceno data

Weight redistributed to sub-signals with data

Documentationno data

Weight redistributed to sub-signals with data

Security Policyno data

Weight redistributed to sub-signals with data

Changelogno data

Weight redistributed to sub-signals with data

Track record, org maturity, community standing

4 of 4 sub-signals with data

Track Record30%0.0

via Fabric index

Org Maturity30%0.0

via GitHub

Community Standing20%0.0

via GitHub

Cross-Platform20%0.0

via Registry scan

About this score
Scored across 23 sub-signals in 6 dimensionsScoring engine v1 (beta) — actively being expandedPhase 1: Core sub-signal architecture (live)Phase 2: Permission scope & expanded collection (in progress)
Trust AssessmentAI Assessment

Package Availability (30d)
100.00%
p50: 32ms · p99: 61ms
Avg Latency
37ms
averaged across 30d health checks
Weekly Downloads
25.9M
PyPI weekly
Incidents & Alertslast 90 days
Mar 5Trust score decreased by 0.702.54
Feb 24mcp added to Trust Index2.52
Showing 2 of 2 events
Score History5 snapshots
5.003.752.501.250.00
Feb 24Mar 5
Community & Ecosystemadoption signals
25.9M
Weekly Downloads
PyPI
Supply Chain & Dependenciestrust chain
anyio
pypi · >=4.5
httpx
pypi · >=0.27.1 · 2 CVEs1L1C
httpx-sse
pypi · >=0.4
jsonschema
pypi · >=4.20.0
pydantic
pypi · <3.0.0,>=2.11.0 · 3 CVEs1L2M
pydantic-settings
pypi · >=2.5.2
Showing 6 of 18 dependencies
Data Sources6 indexed

Are you the publisher?

Claim this profile to unlock deeper evaluation, real-time monitoring,
and trust signals that help agents discover your service.

Share this Trust Score

Generate a scorecard image optimised for X, LinkedIn and other social platforms.

⬇ Download Score Card