The package has a clear README, an MIT declaration, and a repository that matches its name. Its very small release history and absent recent activity make long-term maintenance uncertain, so pinning this old release carries adoption risk.
35%
Total Score
50
63
75
This package has only one release, published about 9 years ago, with no releases in the last 12 months. That is strong evidence of abandonment risk, although the package is small and may be intentionally stable.
There were no commits and no active maintainers in the last 3 months. This confirms that the project is not currently maintained, even if the code is small and stable.
The repository has 0 stars and 0 forks, with only 2 watchers. Popularity is not required for a healthy small package, but these values provide little supporting evidence of community review or ongoing use.
Composer is used as a build tool, which fits the package ecosystem, but no security scanning tools are present. The missing scanning is a minor hygiene gap rather than a standalone adoption blocker.
The repository is not archived, so it remains administratively available. However, its last push was about 9 years ago, which is consistent with the maintenance concerns shown by the release history.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.