Is It Dead Yet? dependency vitals

litellmPyPI

Signals · last 1 check

Commits 90d
100
Open issues
73
Unanswered
0
Contributors
9
State history 1
WhenChange
2026-09-03 first verdict: active
Supply-chain history 1
  1. account hijacked 2026-03 1.82.7, 1.82.8

    Credentials stolen in the same campaign as the Trivy compromise published two releases that harvested environment variables, SSH, cloud and Kubernetes credentials on import and installed persistence.

    PyPI quarantined the project; the maintainers told users to treat it as full credential exposure.

    Source: Datadog Security Labs analysis, 24 March 2026. History, not a warning about today — the verdict above is about maintenance now.

Badge

maintenance: active

Drop this in your README. It re-renders itself as the verdict changes.

[![maintenance](https://isitdeadyet.dev/badge/pypi/litellm.svg)](https://isitdeadyet.dev/pypi/litellm)

Watch it

Get told when litellm changes state, changes licence, or is deprecated — instead of finding out during an incident.

Free for up to 25 packages. Signing in is a link sent to your email — there is no password to choose.