The repository has no security policy or automated security scanning, and its public footprint is very small. A stable MIT license and documented release history help, but the long maintenance gap remains the main concern.
42%
Total Score
0
100
78
50
The last release was on November 28, 2019, and there have been no releases in the last 12 months. Four releases over the package's lifetime show an initial history, but the nearly seven-year gap indicates probable abandonment.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and providing no evidence of current maintenance.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but this provides little community visibility or backup when maintenance is needed.
Composer build tooling is present, but no security scanning tools were detected. The build setup is a small positive, while the missing scanning reduces release oversight.
No security policy was found, leaving vulnerability reporting and response expectations undocumented. This is a maintenance and transparency gap, though it is less serious than the lack of recent development.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
foxy/foxy Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.