The MIT license, README, tests, and small dependency set make the package understandable to adopt. Its tiny user base and lack of security tooling add little assurance, so pinning this release carries meaningful long-term maintenance risk.
45%
Total Score
25
100
72
83
The package has had only two releases, both in January 2019, with no releases in the last 12 months and an age of about 7 years and 8 months. This is strong evidence of abandonment risk, although the stable 1.0.1 release is not deprecated.
There were 0 commits and 0 active maintainers in the last 3 months, consistent with the last push occurring in January 2019. This materially increases the risk that defects and dependency changes will go unaddressed.
The repository is owned by an individual user rather than an organization, so there is no visible organizational backing to compensate for the single-person publishing context. This supports a cautious maintenance assessment but is not severe on its own.
The repository has 1 star, 0 forks, and 1 watcher, indicating very limited adoption and little independent validation. Popularity is supporting evidence rather than a verdict, but this reinforces the maintenance concern.
Composer is used for builds, but no security scanning tool is present. The missing scanner weakens assurance modestly, while Composer provides basic project tooling.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/container Version ^1.0 | — | — |
psr/http-message Version ^1.0 | — | — |
projek-xyz/slim-plates Version ^0.2.2 | — | — |
nilportugues/api-problems Version ^1.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.