The MIT license, focused dependency set, tests, changelog, and matching repository make the package easy to inspect. Its prerelease status and long inactivity leave maintenance uncertain, so it is a poor default for new projects.
38%
Total Score
50
100
71
50
This is the package's only release, published in May 2018, with no releases in the last 12 months. The resulting eight-year release gap is strong evidence of abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the package's long release gap. No provided maintenance signal compensates for this inactivity.
Two issues remain open, while no issues or pull requests were created or closed in the last month. This is additional evidence that reported problems may not receive attention.
The repository uses Composer for builds, but no security scanning tools were detected. The missing scanning is a modest hygiene gap, not a primary reason to reject the package.
The repository has no security policy. For a small interface-only package this is a transparency gap, though it is less significant than the absence of recent development.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.