1.90/ 5.00
cautionBeta
Mar 3, 2026 at 7:21 AM6 signals analysedNo manual reviews · fully automated
Trust Signal Breakdown
high23 sub-signals across 6 dimensions

CVEs, dependency health, and supply chain integrity

2 of 3 sub-signals with data

Known CVEs57%4.7

1 CVE(s) found — 0 unpatched

via OSV.dev

Dependency Healthno data

Weight redistributed to sub-signals with data

Supply Chain43%4.8

58 transitive CVEs found (penalty: -0.25)

via npm provenance

Uptime, latency, error rates, and incident history

4 of 4 sub-signals with data

Uptime35%5.0

100.00% over 2 checks

via Health checks

Response Latency25%5.0

p99: 26ms, p50: 26ms

via Health checks

Error Rate20%5.0

0.00% error rate (0/2)

via Health checks

Incident History20%4.0

1 incidents in last 90 days

via Incidents table

Commit recency, release cadence, issue response, CI/CD

4 of 4 sub-signals with data

Commit Recency30%5.0

via GitHub

Release Cadence25%5.0

via GitHub

Issue Response20%3.0

via GitHub

CI/CD Presence25%5.0

via GitHub Actions

Downloads, stars, dependents, and growth trajectory

2 of 4 sub-signals with data

Download Volume55%4.0

106,903 weekly downloads

via npm / PyPI

GitHub Stars45%5.0

96,240 stars

via GitHub

Dependent Packagesno data

Weight redistributed to sub-signals with data

Growth Trendno data

Weight redistributed to sub-signals with data

License, documentation, security policy, changelog

4 of 4 sub-signals with data

Open Source30%5.0

Public repo with OSI-approved license (mit)

via GitHub

Documentation25%5.0

Docs site present with comprehensive README (>2000 bytes + examples)

via GitHub

Security Policy20%5.0

SECURITY.md present

via GitHub

Changelog25%2.0

No CHANGELOG.md and no releases found

via GitHub

Track record, org maturity, community standing

4 of 4 sub-signals with data

Track Record30%4.5

Internal: 1.0 (0 services), External: 4.5 (18864 followers, 25809 stars)

via Fabric index

Org Maturity30%5.0

User account, 13.6 years old

via GitHub

Community Standing20%4.0

71 public repositories

via GitHub

Cross-Platform20%3.0

Present on 2 platform(s): github, pypi

via Registry scan

About this score
Scored across 23 sub-signals in 6 dimensionsScoring engine v1 (beta) — actively being expandedPhase 1: Core sub-signal architecture (live)Phase 2: Permission scope & expanded collection (in progress)
Trust AssessmentAI Assessment

Python bindings for the llama.cpp library

Package Availability (30d)
100.00%
p50: 26ms · p99: 26ms
Avg Latency
23ms
averaged across 30d health checks
Weekly Downloads
106.9k
PyPI weekly
Transparency & Compliance5/6 passed
Incidents & Alertslast 90 days
Mar 1GitHub repository ownership changed1.90
Mar 1Critical CVE detected — patched in v0.2.721.90
Mar 1Trust score decreased by 1.001.90
Feb 23Llama.cpp added to Trust Index2.90
Showing 4 of 4 events
Score History2 snapshots
5.003.752.501.250.00
Feb 23Mar 1
Community & Ecosystemadoption signals
106.9k
Weekly Downloads
PyPI
10
Releases
on GitHub
Supply Chain & Dependenciestrust chain
black
pypi · >=23.3.0; extra == "dev" · 2 CVEs1L1M
diskcache
pypi · >=5.6.1 · 1 CVE1M
fastapi
pypi · >=0.100.0; extra == "test" · 3 CVEs2L1H
httpx
pypi · >=0.24.1; extra == "dev" · 2 CVEs1L1C
huggingface-hub
pypi · >=0.23.0; extra == "test"
jinja2
pypi · >=2.11.3 · 15 CVEs5L3H7M
Showing 6 of 20 dependencies
Data Sources6 indexed
Version Historyscore per release
VERSIONRELEASEDSCOREDELTA
b8184Mar 1, 20262.90
b8183Mar 1, 20262.90
b8182Feb 28, 20262.90
b8181Feb 28, 20262.90
b8180Feb 28, 20262.90
b8179Feb 27, 20262.90
Showing 6 of 10 releases

Are you the publisher?

Claim this profile to unlock deeper evaluation, real-time monitoring,
and trust signals that help agents discover your service.

Share this Trust Score

Generate a scorecard image optimised for X, LinkedIn and other social platforms.

⬇ Download Score Card