4.58/ 5.00
trustedBeta
Apr 28, 2026 at 6:01 PM6 signals analysedNo manual reviews · fully automated
Trust Signal Breakdown
high23 sub-signals across 6 dimensions

CVEs, dependency health, and supply chain integrity

3 of 3 sub-signals with data

Known CVEs40%5.0

No known CVEs

via OSV.dev

Dependency Health30%5.0

2 dependencies (minimal)

via npm / PyPI

Supply Chain30%4.9

5 transitive CVEs found (penalty: -0.15)

via npm provenance

Uptime, latency, error rates, and incident history

4 of 4 sub-signals with data

Uptime35%5.0

100.00% over 1000 checks

via Health checks

Response Latency25%5.0

p99: 68ms, p50: 40ms

via Health checks

Error Rate20%5.0

0.00% error rate (0/1000)

via Health checks

Incident History20%2.0

5 incidents in last 90 days

via Incidents table

Commit recency, release cadence, issue response, CI/CD

4 of 4 sub-signals with data

Commit Recency30%5.0

via GitHub

Release Cadence25%5.0

via GitHub

Issue Response20%1.0

via GitHub

CI/CD Presence25%5.0

via GitHub Actions

Downloads, stars, dependents, and growth trajectory

3 of 4 sub-signals with data

Download Volume43%4.5

3,154,104 weekly downloads

via npm / PyPI

GitHub Stars36%5.0

170,166 stars

via GitHub

Dependent Packagesno data

Weight redistributed to sub-signals with data

Growth Trend21%5.0

+493.3% week-over-week

via npm

License, documentation, security policy, changelog

4 of 4 sub-signals with data

Open Source30%5.0

Public repo with OSI-approved license (mit)

via GitHub

Documentation25%5.0

Docs site present with comprehensive README (>2000 bytes + examples)

via GitHub

Security Policy20%5.0

SECURITY.md present

via GitHub

Changelog25%4.0

Releases exist but no CHANGELOG.md

via GitHub

Track record, org maturity, community standing

4 of 4 sub-signals with data

Track Record30%4.5

Internal: 1.0 (0 services), External: 4.5 (8872 followers, 184226 stars)

via Fabric index

Org Maturity30%4.5

Organization, 2.4 years old

via GitHub

Community Standing20%2.0

3 public repositories

via GitHub

Cross-Platform20%5.0

Present on 3 platform(s): github, npm, pypi

via Registry scan

About this score
Scored across 23 sub-signals in 6 dimensionsScoring engine v1 (beta) — actively being expandedPhase 1: Core sub-signal architecture (live)Phase 2: Permission scope & expanded collection (in progress)
Trust AssessmentAI Assessment

Ollama is a Python library published by ollama with an unknown license, providing a client interface for running large language models locally via CLI. The package shows strong operational reliability with no vulnerabilities detected across minimal dependencies (httpx, pydantic) and consistent maintenance from a team of 6 maintainers. The undeclared license is a notable transparency gap that organizations should verify before production deployment.

Generated by Fabric AI · Mar 4, 2026 at 4:19 AM

Service Health (30d)
100.00%
p50: 40ms · p99: 68ms
Avg Latency
46ms
averaged across 30d health checks
Weekly Downloads
no package registry data
Incidents & Alertslast 90 days
Apr 20Ollama added to Trust Index4.64
Mar 1Trust score increased by 1.294.53
Mar 1Trust score decreased by 1.203.24
Feb 25Trust score increased by 1.454.44
Feb 23ollama added to Trust Index2.99
Showing 5 of 5 events
Score History90 snapshots
5.003.752.501.250.00
Feb 23Feb 28
Supply Chain & Dependenciestrust chain
httpx
pypi · >=0.27 · 2 CVEs1L1C
pydantic
pypi · >=2.9 · 3 CVEs1L2M
whatwg-fetch
npm · ^3.6.20
Showing 3 of 3 dependencies
Data Sources6 indexed
Version Historyscore per release
VERSIONRELEASEDSCOREDELTA
v0.21.3-rc0Apr 24, 20264.64
v0.21.2Apr 23, 20264.64
v0.21.2-rc1Apr 23, 20264.64
v0.21.1-rc1Apr 22, 20264.64
v0.21.1Apr 22, 20264.64
v0.21.0-rc1Apr 16, 20264.64
Showing 6 of 10 releases

Are you the publisher?

Claim this profile to unlock deeper evaluation, real-time monitoring,
and trust signals that help agents discover your service.

Share this Trust Score

Generate a scorecard image optimised for X, LinkedIn and other social platforms.

⬇ Download Score Card