This is a generally healthy, actively maintained early-stage package with a stable release, recent repository activity, clear licensing, matching repository identity, organization backing, and a security policy. The main adoption risks are a single-contributor maintenance bottleneck, lack of tests and changelog documentation, and no security-scanning tooling; these are meaningful but not severe enough to make the package unfit to depend on. Its short 95-day history and zero popularity provide limited maturity evidence, so continued maintenance should be monitored.
78%
Total Score
88
100
89
100
One contributor made all eight commits in the last three months, creating a clear maintenance bottleneck. Organization backing partly mitigates handoff risk, but no second active contributor is shown.
The repository has zero stars, forks, and watchers, providing little external validation or community support. Popularity is supporting evidence rather than a verdict, so this is a modest concern for a young package.
Composer is used as the build tool, which fits the package ecosystem, but no security-scanning tooling is present. The missing scanner lowers supply-chain assurance without indicating abandonment by itself.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
citomni/kernel Version ^1.0 | — | — |
citomni/installer Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.