The README, matching source contents, and release notes provide useful transparency for consumers. One maintainer and no security scanning or policy leave limited oversight for a small integration client.
58%
Total Score
50
88
75
A single registry maintainer limits publishing redundancy and creates a thin ownership base, although the repository has a recent release.
Only two releases have appeared across about two years, with a median interval of roughly 1 year and 4 months; the one release in the last year shows some activity but a slow cadence.
There were no commits and no active maintainers during the last three months, indicating little ongoing development beyond the recent release.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest security-process gap for a package used to access an external API.
The repository has no security policy, so there is no documented channel or process for reporting vulnerabilities.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.