The package is licensed, documented, and free of install-time scripts. Its single-maintainer project has no security policy or automated security scanning, increasing the cost of trusting future changes.
48%
Total Score
25
81
83
The package has made no release in more than two years, despite a 40-day median interval across its 11 releases; this is a substantial maintenance concern.
There were zero commits and zero active maintainers in the last three months, consistent with the release gap and raising abandonment risk.
The repository is owned by an individual rather than an organization, so the single-person maintenance model has limited visible backing.
Composer is used for builds, but no security scanning tools are configured, leaving less automated oversight for future repository changes.
The repository has no security policy, so it provides no documented channel or process for reporting and handling vulnerabilities.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.