The package is small and straightforward, with only two runtime dependencies and no install-time scripts. Its documentation and licensing are weak, while repository activity has been inactive for about three years, making long-term support uncertain.
44%
Total Score
75
100
69
75
No license declaration or license file was found in the package or repository, leaving usage and redistribution rights unclear.
A README is present, but it is an uncustomized template and does not explain this package; the absence of packaged tests and a changelog is normal for a published artifact.
Only two releases were published, with the latest in October 2020 and none in the last 12 months; this is a material sign of limited ongoing maintenance.
There were no commits and no active maintainers in the last three months, consistent with a project that has been inactive for about three years.
The repository name matches the package, so it does not appear to be piggy-backing on another project; the README nevertheless does not mention the package, limiting transparency.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
composer/installers Version ^1.9 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.