Its tiny two-file footprint and lack of a README leave little guidance for integrating or validating changes. MIT licensing, organization ownership, and no install-time scripts reduce adoption friction.
45%
Total Score
100
72
83
The package has only two releases, both in 2018, with no releases in the last 12 months and no newer version since October 2018. That long period without observed release activity is a substantial maintenance concern.
The absence of tests and a changelog is normal for a published artifact and is not a health gap under the package-scaffolding rules. The missing README is a separate documentation concern for consumers.
The repository has zero stars and forks and one watcher, offering little supporting evidence of adoption or community involvement. Popularity is secondary evidence, but this provides no positive maintenance signal.
Composer is used as a build tool, showing basic ecosystem-appropriate packaging. No security scanning tools are configured, which is a minor transparency gap rather than a standalone dependency risk.
The repository has no security policy. For this small package that is a transparency gap, but it is less significant than the prolonged absence of releases.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.