3.76/ 5.00
trustedBeta
Mar 3, 2026 at 7:21 AM6 signals analysedNo manual reviews · fully automated
Trust Signal Breakdown
high23 sub-signals across 6 dimensions

CVEs, dependency health, and supply chain integrity

3 of 3 sub-signals with data

Known CVEs40%5.0

No known CVEs

via OSV.dev

Dependency Health30%5.0

4 dependencies (minimal)

via npm / PyPI

Supply Chain30%5.0

1 transitive CVEs found (penalty: -0.01)

via npm provenance

Uptime, latency, error rates, and incident history

4 of 4 sub-signals with data

Uptime35%5.0

100.00% over 3 checks

via Health checks

Response Latency25%5.0

p99: 195ms, p50: 166ms

via Health checks

Error Rate20%5.0

0.00% error rate (0/3)

via Health checks

Incident History20%3.0

3 incidents in last 90 days

via Incidents table

Commit recency, release cadence, issue response, CI/CD

3 of 4 sub-signals with data

Commit Recency37%4.0

via GitHub

Release Cadence31%2.0

via GitHub

Issue Responseno data

Weight redistributed to sub-signals with data

CI/CD Presence31%5.0

via GitHub Actions

Downloads, stars, dependents, and growth trajectory

3 of 4 sub-signals with data

Download Volume43%3.5

69,904 weekly downloads

via npm / PyPI

GitHub Stars36%1.0

61 stars

via GitHub

Dependent Packagesno data

Weight redistributed to sub-signals with data

Growth Trend21%4.0

+19.4% week-over-week

via npm

License, documentation, security policy, changelog

4 of 4 sub-signals with data

Open Source30%3.0

Public repo with non-OSI license (noassertion)

via GitHub

Documentation25%4.0

Good README (>2000 bytes with examples)

via GitHub

Security Policy20%2.0

No SECURITY.md found

via GitHub

Changelog25%4.0

Releases exist but no CHANGELOG.md

via GitHub

Track record, org maturity, community standing

4 of 4 sub-signals with data

Track Record30%1.0

Internal: 1.0 (0 services), External: 1.0 (5 followers, 0 stars)

via Fabric index

Org Maturity30%4.5

Organization, 2.4 years old

via GitHub

Community Standing20%1.0

1 public repositories

via GitHub

Cross-Platform20%3.0

Present on 2 platform(s): github, npm

via Registry scan

About this score
Scored across 23 sub-signals in 6 dimensionsScoring engine v1 (beta) — actively being expandedPhase 1: Core sub-signal architecture (live)Phase 2: Permission scope & expanded collection (in progress)
Trust AssessmentAI Assessment

The AI SDK for building declarative and composable AI-powered LLM products.

Package Availability (30d)
100.00%
p50: 166ms · p99: 195ms
Avg Latency
160ms
averaged across 30d health checks
Weekly Downloads
69.9k+19%
npm weekly
Transparency & Compliance2/6 passed
Open Source CodePublic repository on GitHub
OSI LicenseNo recognized open-source license
DocumentationREADME with examples/code blocks
SECURITY.mdNo security policy found
API DocumentationNo API documentation detected
Model / System CardNo model card found
Incidents & Alertslast 90 days
Mar 1Trust score increased by 1.443.76
Feb 26GitHub repository ownership changed2.32
Feb 26Trust score decreased by 1.002.32
Feb 21langbase added to Trust Index2.25
Showing 4 of 4 events
Score History29 snapshots
5.003.752.501.250.00
Feb 21Mar 2
Community & Ecosystemadoption signals
69.9k
Weekly Downloads
npm
10
Releases
on GitHub
Supply Chain & Dependenciestrust chain
dotenv
npm · ^16.4.5
openai
npm · ^4.82.0
zod
npm · ^3.23.8 · 1 CVE1M
zod-validation-error
npm · ^3.3.0
Showing 4 of 4 dependencies
Data Sources6 indexed
Version History
VERSIONRELEASED
1.2.4Nov 6, 2025
1.2.3Nov 6, 2025
1.2.2Nov 6, 2025
1.2.1Nov 6, 2025
1.2.0Nov 6, 2025
1.1.67Nov 6, 2025
Showing 6 of 10 releases

Are you the publisher?

Claim this profile to unlock deeper evaluation, real-time monitoring,
and trust signals that help agents discover your service.

Share this Trust Score

Generate a scorecard image optimised for X, LinkedIn and other social platforms.

⬇ Download Score Card