I know this argument. nd xkcd might be better too. But it's reality that most of the sites have strict password rules and this package is to help those applications.
it doesn't endorse any password technique by itself. Just to serve the demand. :)
It encourages sites to keep using a bad password validation scheme in place. A big readme pointing out that it's far better to have a complexity requirement and indicator than it is to have arbitrary password character requirements.