The code is small and easy to inspect, with a matching repository, MIT licensing, and only one runtime dependency. No security scanning or security policy is provided, leaving limited assurance for future changes.
43%
Total Score
50
100
83
83
The latest release was about 9 years ago, with no releases in the past 12 months. That strongly suggests the package is no longer maintained, despite its earlier history of seven releases.
The repository recorded no commits and no active maintainers in the past 3 months, consistent with the release history showing no activity since April 2017.
Composer is used for the build, but no security-scanning tools are configured. That leaves dependency and code changes with less automated oversight.
The repository has no security policy, which reduces transparency for reporting and handling issues. This is a secondary concern because the package is small and its source is available.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.