Tests, MIT licensing, and a matching organization-owned repository provide useful transparency. The dependency set is modest, though the project offers no security policy or scanning.
73%
Total Score
83
100
89
75
No commits and no active maintainers were recorded during the last three months. This is a meaningful maintenance concern despite the recent release evidence.
The repository has zero stars and forks and one watcher. Popularity is only supporting evidence, but these low engagement figures provide little independent evidence of community support.
The repository uses Composer, but no security scanning tools were detected. That weakens maintenance transparency, although it is not evidence that the release is unsafe.
No security policy was found in the repository, leaving the process for reporting and handling vulnerabilities unclear.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
bytic/collections Version ^0.9 || ^1.0 || ^2.0 | — | — |
bytic/package-base Version ^1.0 | — | — |
symfony/http-foundation Version ^5.0 || ^6.0 || ^7.0 | — | — |
phpoffice/phpspreadsheet Version ^5.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.