Usable with caveats: the package is licensed, tested, clearly backed, and not archived or deprecated. However, it has only two releases, no release in the past year, and no commits in the last three months, so maintenance appears limited.
68%
Total Score
75
100
88
75
Only two releases exist across roughly four years, with no release in the last 12 months and a typical gap of about 989 days; this is a meaningful sign of limited maintenance despite the recent latest release.
There were no commits or active maintainers in the last three months, which weakens evidence of ongoing maintenance and increases abandonment risk.
The repository uses Make and Composer, but no security scanning tools were detected; this is a transparency and maintenance gap, though not severe for this small package.
No repository security policy is present, leaving vulnerability reporting and response expectations undocumented.
Both workflows omit top-level token permissions, so their default permission posture is not explicitly constrained; no workflow was found with declared write access.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nette/utils Version ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.