Healthy and reasonable to depend on. It has regular releases, recent repository activity from two contributors, tests and a changelog in the source repository, and no deprecation or risky workflow indicators. Security documentation and automated security scanning are absent, so review remains appropriate for sensitive use.
88%
Total Score
100
100
94
90
Composer build tooling is present, but no automated security-scanning tool was detected. This is a modest transparency gap rather than a dependency-blocking risk for this small package.
The repository has no security policy, leaving vulnerability-reporting guidance undocumented. The gap lowers transparency but is not, by itself, evidence that the release is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
league/oauth2-client Version ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.