The package has a usable README, tests, MIT licensing, and a focused dependency set. Its very small adoption footprint and absent security policy add little reassurance for a long-term integration dependency.
42%
Total Score
100
58
83
Only one release exists, published about 7 years ago, with no releases in the last 12 months. This strongly suggests the package is no longer actively maintained.
The repository is not archived, but it was last pushed about 7 years ago, which provides little evidence of ongoing maintenance.
The repository has 1 star, 1 fork, and 2 watchers. Low adoption is supporting evidence of limited maturity, though popularity alone does not determine health.
The repository has no security policy. This is a transparency and maintenance gap for a library that handles OAuth-based service integration.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/dotenv Version ^4.0 | — | — |
guzzlehttp/guzzle Version ^6.2 | — | — |
guzzlehttp/oauth-subscriber Version ^0.3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.