The package is well documented, tested, licensed, and has a recent release with clear notes. Its small maintainer base, limited popularity, absent security scanning, and no security policy leave less operational depth than a mature project.
72%
Total Score
50
100
89
75
Only one registry publishing maintainer is listed, which creates limited publishing and continuity depth. The repository is user-owned, so there is no organizational backing shown to compensate for that concentration.
No commits and no active maintainers were recorded in the last 3 months, which is a maintenance concern, although the recent release and repository push provide evidence that the project has not been abandoned.
There is one open issue, with one new issue and no closures in the last month. This is a small unresolved-support concern, but the volume is too low to indicate serious project neglect.
The repository has 21 stars, 5 forks, and 2 watchers. This is modest adoption evidence, but popularity is only supporting evidence and does not outweigh the package's concrete maintenance signals.
Composer build tooling is present, supporting a conventional PHP build, but no security scanning tools were detected, leaving a modest transparency and maintenance gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
erusev/parsedown Version ^1.7.4 || ^1.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.