Healthy and reasonable to use, with some maintenance caveats. It has a long release history, recent releases, tests, a clear README, and an active-looking repository, but no commits in the last 3 months and limited security-process hygiene warrant review before adoption.
78%
Total Score
75
100
94
75
The repository recorded zero commits and zero active maintainers in the last 3 months. This is a maintenance caution, although the recent release history and repository push provide some compensating evidence.
Composer build tooling is present, but no security scanning tools are reported. The missing scanning process lowers transparency somewhat, without evidence of an unsafe build.
The repository has no security policy, leaving vulnerability-reporting expectations undocumented. This is a hygiene gap rather than evidence that the package is unsafe.
The sole workflow has no top-level token permissions declaration. Although it requests no reported write permissions, explicitly limiting workflow permissions would provide stronger CI security hygiene.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
delboy1978uk/country Version ^2.5 | — | — |
delboy1978uk/bone-doctrine Version ^2.11 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.