Recent work comes from six contributors, with tests, documentation, and organization backing. The repository lacks a security policy, and its two workflow actions are unpinned, reducing maintenance transparency and build reproducibility.
68%
Total Score
100
100
71
75
This release is the package's only registry release, published about 17 months ago, with no releases in the last 12 months. That limits evidence of a mature release process.
The repository has only two stars, no forks, and one watcher. Popularity is supporting evidence rather than a verdict, but this provides little external validation.
Composer build tooling is present, but no security scanning tools were detected, leaving security-oriented maintenance practices less visible.
The repository has no security policy, which is a transparency gap for a library that executes PHP code in a sandboxed environment.
The assessed version is v0.1.0 rather than a stable major release, so compatibility and API maturity are less established.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
hyperf/di Version * | — | — |
psr/cache Version * | — | — |
hyperf/framework Version * | — | — |
nikic/php-parser Version ^4.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.