The package includes a clear README, focused file tree, MIT declaration, and no install-time scripts. Its single maintainer and absent security scanning leave limited assurance for a small integration library.
62%
Total Score
50
100
88
83
Only one registry account has publish access, leaving limited publishing redundancy; this is a modest concern because the repository is directly linked to the same owner.
The package has had no registry release since November 2023, despite six releases overall, indicating a prolonged release gap.
There were no commits and no active maintainers in the three months before collection, weakening evidence of ongoing maintenance.
Composer is used for the build, but no security scanning tools are configured, leaving a minor transparency and maintenance gap.
The repository has no security policy, reducing clarity about how vulnerabilities should be reported and handled.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.