The repository has no tests, changelog, security policy, or security scanning, leaving little evidence of ongoing care. Its small dependency set and declared MIT license are straightforward, but do not offset the maintenance gap.
40%
Total Score
0
64
75
The package has only two releases, with none in the last 12 months; the latest release was published in July 2020. This is strong evidence of stalled maintenance.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release history and indicating no recent maintenance capacity.
A README is present, but the package has no tests or changelog, and its own README recommends the original package instead unless these changes are specifically needed. The small artifact explains the missing scaffolding but the recommendation increases adoption risk.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but this provides no external adoption signal to compensate for the lack of maintenance.
Composer is used for the build, which is appropriate, but no security scanning tools are configured. That weakens transparency for a stale dependency.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.