The package has clear licensing, documentation, repository ownership, and release notes for this version. Its workflow uses seven unpinned actions and the repository has no security policy, while recent release and commit activity is limited.
68%
Total Score
75
81
50
The package has 28 releases since March 2022 and historically released frequently, but it has had no registry release in the last 12 months. That weakens evidence of current release maintenance.
There were no commits and no active maintainers during the last three months, which weakens evidence of ongoing maintenance. The recent repository push shown by repository_archived partly offsets this concern but does not establish sustained activity.
The repository uses Composer build tooling, but no security-scanning tools were detected. The missing scanner is a maintenance and assurance gap, though it is not decisive by itself.
The repository has no security policy, reducing transparency about how vulnerabilities should be reported and handled. This is a hygiene gap, not evidence that the package is unsafe.
Version v0.3.5 is not a prerelease, although the package remains below a stable major version. This is a modest maturity limitation rather than a severe concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
decodelabs/exceptional Version ^0.6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.