The project has minimal dependency overhead and clear MIT licensing. Its tiny user base and missing security policy add adoption and transparency concerns.
42%
Total Score
63
100
70
83
The package has had no release in more than four years, despite 12 releases concentrated in its first few days. This is strong evidence of abandonment risk.
There were zero commits and zero active maintainers in the last three months, consistent with the release history showing no release in more than four years. This materially raises abandonment risk.
There are no open issues or pull requests and no recent issue or pull-request activity. This is consistent with a dormant project, though it does not independently prove abandonment.
The repository has one star, no forks, and two watchers. Popularity is supporting evidence rather than a verdict, but these very low figures provide little evidence of broad review or community support.
The repository uses Composer, showing basic build tooling, but has no security-scanning tools. The missing scanning is a hygiene gap rather than a severe risk on its own.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.