3.68/ 5.00
trustedBeta
Mar 5, 2026 at 12:55 AM6 signals analysedNo manual reviews · fully automated
Trust Signal Breakdown
high23 sub-signals across 6 dimensions

CVEs, dependency health, and supply chain integrity

3 of 3 sub-signals with data

Known CVEs40%5.0

No known CVEs

via OSV.dev

Dependency Health30%5.0

17 dependencies (minimal)

via npm / PyPI

Supply Chain30%4.8

18 transitive CVEs found (penalty: -0.25)

via npm provenance

Uptime, latency, error rates, and incident history

4 of 4 sub-signals with data

Uptime35%5.0

100.00% over 8 checks

via Health checks

Response Latency25%4.0

p99: 480ms, p50: 420ms

via Health checks

Error Rate20%5.0

0.00% error rate (0/8)

via Health checks

Incident History20%4.0

1 incidents in last 90 days

via Incidents table

Commit recency, release cadence, issue response, CI/CD

4 of 4 sub-signals with data

Commit Recency30%2.0

via GitHub

Release Cadence25%2.0

via GitHub

Issue Response20%1.0

via GitHub

CI/CD Presence25%5.0

via GitHub Actions

Downloads, stars, dependents, and growth trajectory

1 of 4 sub-signals with data

Download Volumeno data

Weight redistributed to sub-signals with data

GitHub Stars100%2.0

601 stars

via GitHub

Dependent Packagesno data

Weight redistributed to sub-signals with data

Growth Trendno data

Weight redistributed to sub-signals with data

License, documentation, security policy, changelog

4 of 4 sub-signals with data

Open Source30%5.0

Public repo with OSI-approved license (apache-2.0)

via GitHub

Documentation25%3.0

Adequate README (>500 bytes)

via GitHub

Security Policy20%5.0

SECURITY.md present

via GitHub

Changelog25%4.0

Releases exist but no CHANGELOG.md

via GitHub

Track record, org maturity, community standing

4 of 4 sub-signals with data

Track Record30%2.0

Internal: 1.0 (0 services), External: 2.0 (39 followers, 608 stars)

via Fabric index

Org Maturity30%4.5

Organization, 2.7 years old

via GitHub

Community Standing20%2.0

6 public repositories

via GitHub

Cross-Platform20%3.0

Present on 2 platform(s): github, npm

via Registry scan

About this score
Scored across 23 sub-signals in 6 dimensionsScoring engine v1 (beta) — actively being expandedPhase 1: Core sub-signal architecture (live)Phase 2: Permission scope & expanded collection (in progress)
Trust AssessmentAI Assessment

A NodeJS RAG framework to easily work with LLMs and custom datasets

Package Availability (30d)
100.00%
p50: 420ms · p99: 480ms
Avg Latency
387ms
averaged across 30d health checks
Weekly Downloads
no package registry data
Transparency & Compliance5/6 passed
Incidents & Alertslast 90 days
Feb 22@llmembed/embedjs added to Trust Index3.10
Showing 1 of 1 events
Score History16 snapshots
5.003.752.501.250.00
Feb 22Mar 5
Supply Chain & Dependenciestrust chain
@huggingface/inference
npm · ^2.6.4
@langchain/cohere
npm · ^0.0.4
@langchain/community
npm · ^0.0.26 · 3 CVEs1L2M
@langchain/core
npm · ^0.1.25 · 1 CVE1H
@langchain/mistralai
npm · ^0.0.7
@langchain/openai
npm · ^0.0.14
Showing 6 of 17 dependencies
Data Sources6 indexed
Version History
VERSIONRELEASED
v0.1.31Nov 14, 2025
v0.1.30Nov 14, 2025
v0.1.29Jun 13, 2025
v0.1.28Dec 30, 2024
v0.1.27Dec 27, 2024
v0.1.26Dec 27, 2024
Showing 6 of 10 releases

Are you the publisher?

Claim this profile to unlock deeper evaluation, real-time monitoring,
and trust signals that help agents discover your service.

Share this Trust Score

Generate a scorecard image optimised for X, LinkedIn and other social platforms.

⬇ Download Score Card