The package has had no release or commit activity for about four years, and the repository has no security scanning or security policy. A clear README, MIT license, repository tests, and a small runtime dependency provide useful transparency but do not offset the maintenance risk.
45%
Total Score
50
100
72
75
The latest release was published about four years ago, with no releases in the last 12 months; this is strong evidence of a stagnant release process.
There were zero commits and zero active maintainers in the last three months, consistent with the roughly four-year release gap and indicating likely abandonment.
The repository has zero stars, forks, and watchers, offering no supporting evidence of community use or review.
The repository uses Task and Composer build tooling, but no security scanning tools were detected, leaving a modest security-maintenance gap.
The linked repository is not archived, but its last push was about four years ago, so the unarchived status does not remove the observed maintenance concern.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.