Low project popularity and OpenSSF score are concerning, but insufficient evidence to classify as malware without stronger indicators.
No verification record available.
The package's source project has low stars and forks, and the OpenSSF score is low. This raises concerns about its maintenance and community support. However, this single piece of evidence with low confidence is not sufficient to classify the package as malware.