MLflow logo

MLflow

#59 · by mlflow
4.24/ 5.00
trustedBeta
Mar 15, 2026 at 11:05 PM6 signals analysedNo manual reviews · fully automated
Trust Signal Breakdown
high23 sub-signals across 6 dimensions

CVEs, dependency health, and supply chain integrity

3 of 3 sub-signals with data

Known CVEs40%2.8

57 CVE(s) found — 0 unpatched

via OSV.dev

Dependency Health30%3.0

61 dependencies (moderate)

via npm / PyPI

Supply Chain30%4.8

202 transitive CVEs found (penalty: -0.25)

via npm provenance

Uptime, latency, error rates, and incident history

4 of 4 sub-signals with data

Uptime35%5.0

100.00% over 6 checks

via Health checks

Response Latency25%5.0

p99: 58ms, p50: 26ms

via Health checks

Error Rate20%5.0

0.00% error rate (0/6)

via Health checks

Incident History20%1.0

7 incidents in last 90 days

via Incidents table

Commit recency, release cadence, issue response, CI/CD

3 of 4 sub-signals with data

Commit Recency37%5.0

via GitHub

Release Cadence31%4.0

via GitHub

Issue Responseno data

Weight redistributed to sub-signals with data

CI/CD Presence31%5.0

via GitHub Actions

Downloads, stars, dependents, and growth trajectory

2 of 4 sub-signals with data

Download Volume55%4.5

6,985,259 weekly downloads

via npm / PyPI

GitHub Stars45%5.0

24,564 stars

via GitHub

Dependent Packagesno data

Weight redistributed to sub-signals with data

Growth Trendno data

Weight redistributed to sub-signals with data

License, documentation, security policy, changelog

4 of 4 sub-signals with data

Open Source30%5.0

Public repo with OSI-approved license (apache-2.0)

via GitHub

Documentation25%5.0

Docs site present with comprehensive README (>2000 bytes + examples)

via GitHub

Security Policy20%5.0

SECURITY.md present

via GitHub

Changelog25%5.0

CHANGELOG.md present and releases exist

via GitHub

Track record, org maturity, community standing

4 of 4 sub-signals with data

Track Record30%4.0

Internal: 1.0 (0 services), External: 4.0 (1069 followers, 25557 stars)

via Fabric index

Org Maturity30%5.0

Organization, 7.7 years old

via GitHub

Community Standing20%3.0

17 public repositories

via GitHub

Cross-Platform20%3.0

Present on 2 platform(s): github, pypi

via Registry scan

About this score
Scored across 23 sub-signals in 6 dimensionsScoring engine v1 (beta) — actively being expandedPhase 1: Core sub-signal architecture (live)Phase 2: Permission scope & expanded collection (in progress)
Trust AssessmentAI Assessment

MLflow is an open source platform for the complete machine learning lifecycle

Package Availability (30d)
100.00%
p50: 26ms · p99: 58ms
Avg Latency
32ms
averaged across 30d health checks
Weekly Downloads
no package registry data
Incidents & Alertslast 90 days
Mar 1Trust score increased by 0.674.24
Feb 26Critical CVE detected — patched in v2.10.03.57
Feb 26Critical CVE detected — patched in v2.10.03.57
Feb 25Critical CVE detected — patched in v2.10.03.57
Feb 25Trust score increased by 2.583.57
Feb 23mlflow added to Trust Index0.99
Showing 6 of 7 events
Score History90 snapshots
5.003.752.501.250.00
Feb 23Mar 14
Supply Chain & Dependenciestrust chain
aiohttp
pypi · <4; extra == "genai" · 31 CVEs9L5H17M
alembic
pypi · !=1.10.0,<2
aliyunstoreplugin
pypi · *
azure-storage-file-datalake
pypi · >12; extra == "databricks"
azureml-core
pypi · >=1.2.0; extra == "extras"
boto3
pypi · <2,>=1.28.56; extra == "genai"
Showing 6 of 49 dependencies
Data Sources6 indexed
Version History
VERSIONRELEASED
v3.10.0Feb 20, 2026
v3.10.0rc0Feb 12, 2026
v3.9.0Jan 29, 2026
v3.9.0rc0Jan 16, 2026
v3.8.1Dec 27, 2025
v3.8.0Dec 22, 2025
Showing 6 of 10 releases

Are you the publisher?

Claim this profile to unlock deeper evaluation, real-time monitoring,
and trust signals that help agents discover your service.

Share this Trust Score

Generate a scorecard image optimised for X, LinkedIn and other social platforms.

⬇ Download Score Card