It includes tests, a clear README, an MIT license, and organization-backed source. The package is too new to establish a dependable maintenance pattern, so pin this version and reassess future releases.
68%
Total Score
75
100
88
83
This is the package's first release, published 0 days ago, so there is no release history or cadence to demonstrate maturity. Its newness limits confidence but is not evidence of abandonment by itself.
There were no commits or active maintainers in the previous three months. Because the package is only 0 days old and was pushed on the release date, this more strongly shows limited history than established abandonment, but it still leaves maintenance capacity unproven.
The repository uses Composer, but no security-scanning tool was detected. For a small PHP package this is a modest hygiene gap, not a standalone dependency risk.
No repository security policy was found. This weakens vulnerability-reporting transparency, although the package is small and the signal alone does not indicate unsafe code.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^3.0 | — | — |
jedibc/optional Version ^1.0 | — | — |
amtgard/builder-traits Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.