Usable with caveats: it is a small, clearly packaged Yii2 extension with a stable MIT release, README, and changelog, but maintenance activity is currently weak. There have been no repository commits in the last three months, and the project has no security scanning or security policy.
62%
Total Score
67
100
83
90
Only one registry account has publishing access. The repository is also owned by the same individual rather than an organization, so there is limited visible maintainer redundancy.
The package is about 370 days old with only two releases and one release in the last 12 months. This is limited maintenance evidence for a relatively young project, despite the recent latest release.
The repository had zero commits and zero active maintainers in the last three months. This is the clearest maintenance concern, although the recent push shows the project has not been abandoned outright.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but these counts provide no external evidence of community adoption or review.
Composer build tooling is present, but no security scanning tools are configured. For an authorization-related extension, that is a meaningful hygiene gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
yiisoft/yii2 Version ~2.0.14 | — | — |
guzzlehttp/guzzle Version ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.