It has a clear MIT license, a usable README, and repository tests. Maintenance appears stalled, with no releases for four years, very little repository adoption, and no security policy.
58%
Total Score
50
100
79
83
The repository is owned by an individual account rather than an organization, so the short registry maintainer context is not explained by organization backing. This offers limited maintenance-capacity evidence but is not severe on its own.
The latest release was in May 2022, with no releases in the last 12 months, indicating a long maintenance gap. The nine total releases show some past activity but do not offset the current stagnation.
There are no open issues or pull requests and no recent issue or pull-request activity. Combined with the old last release, this supports the conclusion that maintenance is inactive.
The repository has one star and no forks, showing minimal adoption and limited external validation. Popularity is supporting evidence rather than a verdict, so this modestly lowers confidence in the project’s maturity.
Composer is used as the build tool, which fits the package ecosystem, but no security scanning tools are present. The missing scanning is a minor transparency gap rather than evidence of unsafe behavior.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.