The repository includes tests, a README, and a clear GPL license, while install-time scripts are absent. Zero repository activity and no security tooling leave little evidence of active oversight.
40%
Total Score
0
67
75
The package has had no release in about 5 years and 10 months, with zero releases in the last 12 months. This is strong evidence of abandonment for a dependency that may need fixes.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the long release gap. The project is not archived, but current maintenance capacity is not visible.
The repository has 0 stars, forks, and watchers. Popularity is only supporting evidence, but these numbers provide no additional sign of community review or backup.
Composer build tooling is present, but no security scanning tools are configured. That leaves published changes and dependency issues with less automated oversight.
The repository has no security policy, reducing transparency about how vulnerabilities should be reported. This is a hygiene concern rather than evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.