The package is small and easy to inspect, with a clear README, MIT licensing, and a narrow dependency set. It lacks tests and security scanning, leaving less evidence that future changes would be maintained safely.
52%
Total Score
75
100
80
50
This is the sole release, published in June 2022, with no releases in roughly four years. That leaves substantial uncertainty about ongoing maintenance, although a small stable package may not need frequent releases.
The repository recorded zero commits and zero active maintainers during the last three months, consistent with the long release gap. This is a meaningful abandonment concern for a dependency.
Composer is used as the build tool, but no security scanning tool is configured. The missing scanning is a modest transparency and maintenance weakness rather than a severe risk.
The repository has no security policy, so there is no documented channel or process for reporting and handling vulnerabilities. For a small package this is a hygiene gap, but it is not evidence of maliciousness.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/container Version ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.