Clear documentation, tests, and release notes make integration easier. The small project has one publisher and no commits in the last three months, so future fixes may depend on a single maintainer.
68%
Total Score
50
100
94
83
Only 1 registry publishing account is listed, and the project backing is an individual rather than an organization; this creates some continuity risk if that maintainer becomes unavailable.
The registry namespace and repository owner match, so ownership is consistent; the owner is an individual account rather than an organization, limiting evidence of institutional backing.
The package has existed for about 7 years with 15 releases, but only 1 release in the last 12 months indicates a slower current cadence.
The repository had 0 commits and 0 active maintainers in the last three months, which weakens evidence of ongoing maintenance despite the recent v2.0.7 release.
No repository security policy was found, leaving vulnerability-reporting expectations undocumented; this is a transparency gap rather than evidence of unsafe code.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
league/flysystem Version ^3.14 | — | — |
cloudinary/cloudinary_php Version ^2.10 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.