Its MIT licensing, clear README, tests in the repository, and minimal runtime dependency make adoption straightforward. The project is still young and lacks security scanning and a security policy, so long-term maintenance remains uncertain.
64%
Total Score
50
100
79
75
The package is only 83 days old with two releases, so it has limited evidence of sustained maintenance despite the short interval between its initial releases.
One contributor made all three recent commits, leaving maintenance dependent on a single person without evidence of broader contributor support.
The repository recorded three commits in the last three months, showing some activity but not a strong maintenance cadence.
Composer build tooling is present, but no security-scanning tooling was detected; this is a modest supply-chain hygiene gap rather than evidence of unsafe behavior.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented for consumers.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.