Its MIT license, organization backing, and clean install behavior reduce adoption friction. The minimal README, absent recent commits, and lack of repository security scanning leave maintenance and integration details unclear.
64%
Total Score
75
50
79
75
Nine runtime dependencies, including Laravel, Google, Microsoft Graph, and mail integrations, create meaningful dependency surface area for a messaging library, though the profile is coherent with its stated functionality.
A GitHub release exists for this version, but the published README is only 22 characters and the repository has no tests or changelog. Missing tests and changelog are normal packaging practice, while the extremely limited README reduces integration transparency.
There were zero commits and zero active maintainers in the last three months. This is a meaningful maintenance concern, although the recent release history and February repository push provide some compensating evidence.
Composer build tooling is present, but no security scanning tools were detected, leaving an avoidable gap in repository maintenance hygiene.
The repository has no security policy, making vulnerability reporting and response expectations unclear for a package handling email, OAuth tokens, and messaging integrations.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
kompo/kompo Version * | — | — |
condoedge/utils Version ^v0.2.12 | — | — |
google/apiclient Version ^2.15.0 | — | — |
laravel/framework Version >=8.0 | — | — |
league/oauth2-client Version ^2.6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.