The README is detailed, and the organization-backed repository has two active contributors with balanced ownership. The project lacks security scanning and a security policy, leaving maintenance safeguards relatively thin.
68%
Total Score
83
75
50
The package is about 6 months old with 10 releases, showing active initial development; its short operating history leaves long-term maintenance unproven.
The repository had 2 commits from 2 active maintainers in the last 3 months, demonstrating recent activity but at a light pace for a young library.
Composer build tooling is present, but no security scanning tools were detected, leaving fewer automated checks for dependency or code risks.
The linked repository has no security policy, which reduces transparency about vulnerability reporting and response expectations.
The assessed release is a stable major version and not a prerelease, which supports adoption, although 80% of recent releases were prereleases and indicate a still-evolving project.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^1.0 || ^2.0 || ^3.0 | — | — |
ramsey/uuid Version * | — | — |
overtrue/http Version ^1.2 | — | — |
psr/container Version ^1.0 || ^2.0 | — | — |
symfony/console Version ^6.0|^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.