Tests, release notes, a matching repository, and a stable MIT-licensed release support transparency. The absence of a security policy and automated security checks leaves some hygiene gaps, while maintenance uncertainty remains the key concern.
44%
Total Score
75
88
83
The latest release was published in October 2019, with no releases in the last 12 months despite 21 total releases. This long release gap materially raises abandonment risk.
There were zero commits and zero active maintainers in the last three months. Combined with the old registry release, this indicates little evidence of current maintenance.
Composer build tooling is present, but no security scanning tools are configured. This is a modest transparency and hygiene gap rather than a standalone dependency blocker.
The repository has no security policy. For a package that crawls courier websites and APIs, the missing disclosure process is a maintenance and transparency gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nesbot/carbon Version 1.25.* | — | — |
guzzlehttp/guzzle Version ^6.3 | — | — |
symfony/dom-crawler Version ^4.0 | — | — |
symfony/css-selector Version ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.