The package is small and clearly documented, with a matching repository and simple Composer setup. Organization backing and a recent release provide continuity, but limited testing and security documentation reduce confidence.
64%
Total Score
75
88
50
Only two releases have been published across roughly 20 months, with one release in the last 12 months. This is a thin release record and warrants caution despite the recent 2.4.1 release.
There were no commits and no active maintainers in the past three months. The latest release provides some recent evidence of activity, but ongoing maintenance capacity remains uncertain.
Composer is used for the build, which fits the package ecosystem, but no security scanning tools are configured. This is a modest transparency and maintenance-hygiene gap.
The repository has no security policy. For a small utility this is not a severe risk, but it leaves vulnerability-reporting expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
intervention/image Version ^4.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.