The repository has no security policy or automated security scanning, and two pull requests remain open. It is licensed and includes usable README documentation and release notes, but the small project footprint limits confidence in ongoing support.
38%
Total Score
67
81
50
The package has had no release in more than 8 years, despite 10 releases earlier in its history. That long silence is a substantial maintenance and abandonment concern.
The repository recorded zero commits and zero active maintainers over the last 3 months. Combined with the old last push, this is a clear ongoing-maintenance concern.
There has been no issue or pull-request activity in the last month, while one issue and two pull requests remain open. This provides additional evidence of limited project attention.
Composer build tooling is present, but no security scanning tools are configured. That is a hygiene and transparency gap for a package handling service credentials and integrations.
The linked repository is not archived, which preserves the possibility of future maintenance. Its last push was in December 2020, however, consistent with the broader inactivity concern.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.