The MIT license, matching repository, and ordinary install behavior are reassuring. The short README and absent security tooling leave limited documentation and oversight.
66%
Total Score
75
79
50
The package includes a README, but it is only 42 characters and provides almost no integration guidance. Missing tests and a changelog are normal for published artifacts and are not concerns here.
This is the package's first release, published today, so there is no release history to demonstrate sustained maintenance or stability. Its stable 1.0.0 version is a modest compensating signal, but not a track record.
The repository has 0 commits and 0 active maintainers in the last 3 months, but the package is only 0 days old, so this currently reflects lack of elapsed history rather than clear abandonment.
Composer build tooling is present, which supports reproducible project structure, but no security scanning tooling was detected, leaving a modest oversight gap.
The repository has no security policy, reducing transparency about how vulnerabilities should be reported and handled. The package's license and matching source repository provide some useful transparency but do not replace a policy.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.