It has a clear MIT license, tests, and an organization-backed repository. The main concern is that releases and recent commits have stopped, while no security policy is published.
62%
Total Score
75
50
83
83
Ten runtime dependencies create a meaningful dependency surface for a framework component, though the profile alone does not indicate unhealthy maintenance.
The package has 55 releases since 2018, but its latest release was about 21 months ago and there were no releases in the last 12 months, indicating slowed maintenance.
There were no commits and no active maintainers in the last 3 months, which is direct evidence of currently inactive development and reinforces the stale release history.
There are no new or closed issues in the last month and one open pull request, showing limited recent collaboration but not abandonment by itself.
The repository has zero stars and forks and one watcher, providing little external adoption evidence. Popularity is supporting evidence, so this is a minor concern rather than a decisive risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
bytic/http Version ^1.0|^2.0 | — | — |
bytic/cache Version ^1.0|^2.0 | — | — |
bytic/config Version ^1.0|^2.0 | — | — |
bytic/helpers Version ^1.0|^2.0 | — | — |
bytic/utility Version ^1.0|^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.