Good documentation, tests, licensing, and a small dependency footprint reduce integration risk. The source remains available and is not archived, but its maintenance signals are too old for a new dependency.
45%
Total Score
50
100
75
75
The package has had no release for nearly six years, despite 22 releases overall; this is strong evidence that maintenance has stopped or substantially slowed.
The repository recorded zero commits and zero active maintainers in the last three months, reinforcing the long release gap and increasing abandonment risk.
Composer and Make are used for project tooling, but no security scanning tool is present; this is a minor hygiene gap rather than a decisive risk.
The repository has no security policy, reducing transparency about vulnerability reporting and handling; the gap matters more because maintenance activity is already stale.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.