Usable with caveats: the package is licensed, documented, tested, and not deprecated, but it has had no release or repository activity for about four years and nine months. Its tiny, single-maintainer project and lack of security scanning increase maintenance risk.
58%
Total Score
0
100
83
83
There were no commits and no active maintainers in the last three months. Combined with the old last push, this indicates substantial abandonment risk.
This is a mature package with only one release, published about four years and nine months ago, and no releases in the last 12 months. The lack of any follow-up release is a meaningful maintenance concern.
The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these figures provide little evidence of a broad user or contributor community.
Composer build tooling is present, but no security scanning tools are configured. The missing scanning is a transparency and maintenance gap, though it is not by itself disqualifying.
The repository has no security policy, leaving vulnerability-reporting expectations unclear. This is a modest transparency gap for a package intended for reuse.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
alpa/tools_proxy_object Version ^1.0.10 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.