The package has a clear README, tests, changelog, MIT licensing, and no install-time scripts. Its small, single-person project has had no commits or releases for over a year and lacks security scanning and a security policy.
52%
Total Score
50
88
75
All 11 releases were published in a single burst on March 24, 2025, followed by no releases in the last 12 months. This indicates stalled maintenance despite the package being over a year old.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, providing direct evidence of currently inactive development.
Composer build tooling is present, but no security scanning tools were detected. That leaves dependency and code-risk checks less visible.
The repository has no security policy. This weakens vulnerability-reporting transparency, though it is a hygiene gap rather than evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.