The project has organization backing, a clear README, repository tests, and a license. Its workflows use unpinned actions, while the limited release history and absent recent commits provide little evidence of long-term support.
68%
Total Score
75
100
88
83
This is the only release, published 190 days ago, so there is limited evidence of sustained maintenance or release discipline.
No commits and no active maintainers were observed in the last three months, which weakens evidence that issues or compatibility changes will be addressed.
Composer build tooling is present, but no security scanning tooling was detected; this is a modest transparency and maintenance gap.
The repository has no security policy, leaving vulnerability-reporting expectations undocumented.
Both workflows were fully analyzed with no dangerous audit findings, but both use unpinned actions, making their build inputs less reproducible.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.