The small scope and simple dependency profile limit complexity. Clear licensing and an intact, package-matching repository help, but the lack of tests and security scanning reduces confidence in future changes.
42%
Total Score
0
100
70
50
The package has 11 releases, but none in the last 12 months and the latest was published in May 2019, indicating prolonged release inactivity.
The repository recorded no commits and no active maintainers in the last 3 months, consistent with the release history and a substantial abandonment risk.
Composer build tooling is present, but no security scanning tools were detected, reducing automated coverage for future dependency or code changes.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented for a package that interacts with GitHub repositories.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.