Healthy and usable for its narrow integration role. It has recent releases, an active non-archived organization-backed repository, and a stable version, though all recent commits come from one contributor and the small project has no tests or security policy.
78%
Total Score
83
100
88
90
The package includes a README and uses GitHub Releases, but neither the artifact nor repository has tests or a changelog. For this small six-file adapter, the missing tests are a modest maintenance gap rather than a severe risk.
All four recent commits came from one contributor, creating a real continuity risk. The organization-owned repository provides some handoff capacity, but no second active contributor is shown.
Composer build tooling is present, but no security scanning tools are configured. This is a transparency and maintenance gap, though the narrow package scope limits its effect.
No repository security policy is present, leaving vulnerability-reporting expectations undocumented. This is a hygiene gap, not evidence of abandonment.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/psr7 Version ^2.8 | — | — |
psr/http-message Version ^2.0 | — | — |
componenta/config Version ^3.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.