Its MIT license, focused dependency set, matching repository, and clear README support straightforward adoption. The project has no security scanning or security policy, and recent commit activity is absent, limiting maintenance confidence.
61%
Total Score
75
100
88
50
The package has only two releases, with the latest published about six years ago and none in the last 12 months. This is a substantial maintenance concern, though the package is small and narrowly scoped.
There were no commits from active maintainers in the last three months. Combined with the old registry release, this limits evidence of ongoing maintenance.
The repository uses Composer, but no security scanning tools are configured. For a small middleware package this is a modest transparency and maintenance gap.
The repository has no published security policy. This does not make the package unsafe by itself, but it weakens transparency around vulnerability reporting.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.