The MIT license, included tests, and regular release history provide useful baseline transparency. The very short README and lack of repository security tooling leave limited guidance for adoption.
62%
Total Score
50
89
67
No commits and no active maintainers were recorded in the last three months, which is a meaningful maintenance warning despite the recent release history.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but this provides no external adoption signal to offset the thin maintenance evidence.
Composer build tooling is present, but no security scanning tools were detected, leaving repository security hygiene less transparent.
The repository has no security policy, so there is no documented process for reporting or handling vulnerabilities.
No GitHub Actions workflows were found, so the audit reports no workflow hazards; it also provides no automation or CI evidence.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
spatie/image Version ^2.2 | — | — |
coco-project/wp Version ^1.0 | — | — |
coco-project/queue Version ^1.0 | — | — |
symfony/dom-crawler Version ^6.4 | — | — |
coco-project/simple-page-downloader Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.