CRUD implementation
82%
Total Score
63
100
88
90
Neither a declared license nor a license file was detected, leaving the legal terms for adoption unclear. This is a genuine transparency concern for a dependency, though it does not by itself indicate abandonment.
The source repository is owned by a personal user account rather than an organization. This does not negate the demonstrated activity, but it provides less institutional maintenance backing.
Two contributors were active in the last 3 months, with the leading contributor responsible for 70% of commits. The concentration is noticeable, but a second active contributor provides partial resilience.
There were no new issues or pull requests in the last month, but one pull request was merged and 11 remain open. This suggests limited recent collaboration and some backlog, warranting a modest maintenance caution rather than a severe concern.
Composer is used as a build tool, supporting reproducible project operations, but no security-scanning tooling was detected. The missing scanning layer is a transparency and assurance gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.