The package has a minimal footprint, a single runtime dependency, and a clear MIT declaration. It lacks tests and security scanning, leaving little evidence of ongoing quality; adopting this old release carries substantial maintenance risk.
40%
Total Score
50
100
83
83
The latest release was about 7 years and 9 months ago, with no releases in the last 12 months. This is strong evidence of abandonment risk for a package intended as a reusable client library.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the long release gap and offering no evidence of current maintenance.
The repository has 0 stars, forks, and watchers. Popularity is only supporting evidence, but these counts provide no community signal to offset the inactivity.
Composer is used for the build, but no security scanning tools are configured. The missing scanning reduces maintenance assurance for a package with no recent activity.
The repository has no security policy. This is a transparency and vulnerability-reporting gap, though it does not by itself show that the code is unsafe.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.