The long release history, stable versioning, and matching organization-backed repository support adoption. Low popularity, no recent commit activity, and missing security scanning leave meaningful maintenance and assurance gaps.
67%
Total Score
75
89
75
The repository recorded zero commits and zero active maintainers in the last three months, which is a concrete sign of currently thin maintenance activity despite the recent release.
The repository has only 6 stars, 8 forks, and 5 watchers. This is limited supporting evidence and reduces external visibility, but popularity alone does not establish abandonment.
Composer is used as the build tool, but no security-scanning tools were detected, leaving a modest gap in repository assurance.
No security policy was found in the repository, so the project gives consumers no documented security-reporting process.
All three analyzed workflows use unpinned actions (3 of 3), which weakens build reproducibility and action supply-chain hygiene. No dangerous triggers, untrusted checkouts, script injection, or audit findings were detected, limiting the impact to caution.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.