The MIT license, substantial README, tests, and changelog make the release straightforward to evaluate and consume. Missing security tooling and a single maintainer leave less protection as the young project matures.
58%
Total Score
50
100
72
75
One registry maintainer is consistent with the matching individual repository owner, but it leaves little visible redundancy if that maintainer becomes unavailable.
The package and repository are owned by the same individual account rather than an organization. That is coherent ownership, but it indicates limited visible institutional backing.
The package is 162 days old with only two releases, although the first releases arrived about a day and a half apart. This shows initial activity but not a mature release track record.
The repository recorded zero commits and zero active maintainers in the last three months. For a young package, that is a meaningful warning about ongoing maintenance.
The repository has zero stars, forks, and watchers. This is weak supporting evidence for maturity, but popularity alone does not determine whether a small package is healthy.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/http-client Version ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.