The package includes tests, a clear MIT license, and an organization-backed repository. Security tooling and a security policy are absent, so future maintenance and response capacity are limited.
58%
Total Score
75
81
83
The latest release was in December 2023, with no releases in the following nearly three years. That raises abandonment risk despite the package having nine releases overall.
The repository recorded no commits and no active maintainers in the last three months. Its push history shows the repository is not archived, but current development activity is still weak.
The repository has one star, no forks, and one watcher. This is only supporting evidence, but it indicates a very small external user and contributor base.
Composer build tooling is present, but no security scanning tools were detected. This limits automated visibility into dependency and code risks.
The repository has no published security policy, reducing transparency about how vulnerabilities are reported and handled.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
predis/predis Version ^1.1 | — | — |
google/apiclient Version ^2.1 | — | — |
guzzlehttp/guzzle Version 6.2.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.