The MIT license and lack of install-time scripts reduce immediate adoption friction. The 26-character README, absent security policy, and repository mismatch leave little evidence of reliable ongoing support.
32%
Total Score
0
69
75
The package has made only 3 releases, all in April 2019, with no release in the past 12 months and an age of about 7 years. This is strong evidence of abandonment for a dependency.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with activity stopping around April 2019. This leaves no current maintenance capacity visible.
The artifact includes a README, but it is only 26 characters and offers almost no consumer guidance. Missing tests and a changelog are normal for published Composer artifacts and are not counted against it.
The repository name does not match the package name and its README does not mention bonwe/webdriver. That makes package ownership and source provenance unclear, beyond an ordinary monorepo naming difference.
Composer is used as the build tool, which fits the package ecosystem, but no security-scanning tooling is present. This is a secondary hygiene gap alongside the stronger abandonment evidence.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.