The documentation is unusually thorough, and the package has a clear license and matching source repository. Its small project footprint leaves little evidence of sustained support.
52%
Total Score
50
50
79
83
Nine runtime dependencies, including several related Nexus packages, create a broad dependency surface and increase coordination requirements for this early release. The profile is coherent with the package's stated reporting role but remains a maturity consideration.
This package has only one release in 145 days, so there is little release history to demonstrate sustained maintenance. Its young age partly explains the limited record but does not remove the uncertainty.
There were no commits and no active maintainers in the last three months. For a package released 145 days ago, this leaves weak evidence of ongoing maintenance.
Composer build tooling is present, but no security scanning tools were detected. The missing scanning is a hygiene gap rather than evidence that the release is unsafe.
The repository has no security policy, reducing transparency for reporting and handling vulnerabilities. Other repository documentation provides some compensating project context, but not a vulnerability-reporting process.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^3.0 | — | — |
symfony/uid Version ^7.0 | — | — |
azaharizaman/nexus-export Version dev-main | — | — |
azaharizaman/nexus-storage Version dev-main | — | — |
azaharizaman/nexus-notifier Version dev-main | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.