The README, tests, and clear generated artifact support practical integration. Organization ownership helps continuity, while the lack of a security policy leaves project-level transparency thinner.
66%
Total Score
67
100
80
50
The package has 91 releases in 230 days, showing active publishing, but the extremely short median interval suggests automated or bursty releases rather than established release stability.
One contributor made all two recent commits, creating a narrow maintenance base. Organization ownership provides some handoff capacity, but no second active contributor is shown.
Only two commits were recorded in the last three months, so recent maintenance activity is thin even though the repository was updated very recently.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented for a client library that handles API credentials.
This release is marked prerelease and the latest version is also non-stable, which increases compatibility uncertainty for consumers despite the recent publishing activity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/psr7 Version ^1.7 || ^2.0 | — | — |
guzzlehttp/guzzle Version ^7.3 || ^7.10 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.