The GPL license, small runtime footprint, and clear package contents keep adoption straightforward. There is no repository security policy or security scanning, so teams with stricter assurance needs should add their own checks.
70%
Total Score
75
100
83
75
The repository recorded zero commits and zero active maintainers in the last three months. This conflicts with the strong release history and recent push, but still leaves current development activity less clear.
Composer is used for builds, but no security scanning tools were detected. That is a modest transparency and assurance gap, not evidence of unsafe code.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented.
This is a beta release in an otherwise stable major line; the prerelease status warrants some compatibility caution, though prereleases are only 10% of recent releases.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.