The matching source repository and MIT license provide useful transparency. Its small dependency set and lack of install-time scripts limit complexity, but consumer documentation and security process are thin.
42%
Total Score
0
100
70
75
Only two releases were published, with the latest in October 2019 and none in the last 12 months; this is strong evidence that the package is no longer actively maintained.
The repository recorded zero commits and zero active maintainers in the last three months, reinforcing the long release gap and raising abandonment risk.
The artifact has no README, which makes a library harder to integrate and understand. Missing tests and a changelog are normal packaging practice and do not add concern here.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented; this is a hygiene gap for a package intended for application integration.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
tcg/voyager Version ^1.2.7 | — | — |
larapack/hooks Version ^1.0.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.