It includes a README, tests, a matching repository, release notes, and an MIT declaration. Limited popularity, absent security scanning, and unpinned workflow actions reduce confidence for long-term use.
58%
Total Score
50
71
50
The package has only three releases and none in the last four years; its latest registry release was published on January 31, 2022. This is meaningful abandonment risk despite a previously regular 68-day median interval.
The repository recorded zero commits and zero active maintainers during the last three months, consistent with the long release gap. No provided maintenance signal compensates for this inactivity.
The repository has zero stars and forks and only one watcher, providing little evidence of community review or shared maintenance capacity. Popularity is supporting evidence, so this lowers confidence modestly rather than determining the verdict.
Composer is used for the build, but no security scanning tools are configured. The missing automated security coverage is a modest maintenance and assurance concern.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a transparency gap for a network-facing SOAP client.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.