4.67/ 5.00
trustedBeta
Mar 7, 2026 at 8:30 PM6 signals analysedNo manual reviews · fully automated
Trust Signal Breakdown
high23 sub-signals across 6 dimensions

CVEs, dependency health, and supply chain integrity

3 of 3 sub-signals with data

Known CVEs40%5.0

No known CVEs

via OSV.dev

Dependency Health30%5.0

2 dependencies (minimal)

via npm / PyPI

Supply Chain30%4.9

5 transitive CVEs found (penalty: -0.15)

via npm provenance

Uptime, latency, error rates, and incident history

4 of 4 sub-signals with data

Uptime35%5.0

100.00% over 278 checks

via Health checks

Response Latency25%5.0

p99: 107ms, p50: 41ms

via Health checks

Error Rate20%5.0

0.00% error rate (0/278)

via Health checks

Incident History20%2.0

4 incidents in last 90 days

via Incidents table

Commit recency, release cadence, issue response, CI/CD

4 of 4 sub-signals with data

Commit Recency30%5.0

via GitHub

Release Cadence25%5.0

via GitHub

Issue Response20%4.0

via GitHub

CI/CD Presence25%5.0

via GitHub Actions

Downloads, stars, dependents, and growth trajectory

3 of 4 sub-signals with data

Download Volume43%4.5

2,680,622 weekly downloads

via npm / PyPI

GitHub Stars36%5.0

164,297 stars

via GitHub

Dependent Packagesno data

Weight redistributed to sub-signals with data

Growth Trend21%5.0

+470.7% week-over-week

via npm

License, documentation, security policy, changelog

4 of 4 sub-signals with data

Open Source30%5.0

Public repo with OSI-approved license (mit)

via GitHub

Documentation25%5.0

Docs site present with comprehensive README (>2000 bytes + examples)

via GitHub

Security Policy20%5.0

SECURITY.md present

via GitHub

Changelog25%4.0

Releases exist but no CHANGELOG.md

via GitHub

Track record, org maturity, community standing

4 of 4 sub-signals with data

Track Record30%4.5

Internal: 1.0 (0 services), External: 4.5 (8252 followers, 177836 stars)

via Fabric index

Org Maturity30%4.5

Organization, 2.3 years old

via GitHub

Community Standing20%2.0

3 public repositories

via GitHub

Cross-Platform20%5.0

Present on 3 platform(s): github, npm, pypi

via Registry scan

About this score
Scored across 23 sub-signals in 6 dimensionsScoring engine v1 (beta) — actively being expandedPhase 1: Core sub-signal architecture (live)Phase 2: Permission scope & expanded collection (in progress)
Trust AssessmentAI Assessment

Ollama is a Python library published by ollama with an unknown license, providing a client interface for running large language models locally via CLI. The package shows strong operational reliability with no vulnerabilities detected across minimal dependencies (httpx, pydantic) and consistent maintenance from a team of 6 maintainers. The undeclared license is a notable transparency gap that organizations should verify before production deployment.

Generated by Fabric AI · Mar 4, 2026 at 4:19 AM

Service Health (30d)
100.00%
p50: 41ms · p99: 107ms
Avg Latency
44ms
averaged across 30d health checks
Weekly Downloads
no package registry data
Incidents & Alertslast 90 days
Mar 1Trust score increased by 1.294.53
Mar 1Trust score decreased by 1.203.24
Feb 25Trust score increased by 1.454.44
Feb 23ollama added to Trust Index2.99
Showing 4 of 4 events
Score History90 snapshots
5.003.752.501.250.00
Feb 23Feb 28
Supply Chain & Dependenciestrust chain
httpx
pypi · >=0.27 · 2 CVEs1L1C
pydantic
pypi · >=2.9 · 3 CVEs1L2M
whatwg-fetch
npm · ^3.6.20
Showing 3 of 3 dependencies
Data Sources6 indexed
Version Historyscore per release
VERSIONRELEASEDSCOREDELTA
v0.17.7-rc2Mar 5, 20264.64+0.11
v0.17.7Mar 5, 20264.64+0.11
v0.17.6Mar 4, 20264.53
v0.17.5Mar 2, 20264.53+0.09
v0.17.4Feb 27, 20264.44
v0.17.3Feb 27, 20264.44
Showing 6 of 10 releases

Are you the publisher?

Claim this profile to unlock deeper evaluation, real-time monitoring,
and trust signals that help agents discover your service.

Share this Trust Score

Generate a scorecard image optimised for X, LinkedIn and other social platforms.

⬇ Download Score Card