Recent releases and an unarchived repository support continued maintenance. The repository has no automated security scanning, and its single registry maintainer leaves limited visible redundancy.
73%
Total Score
50
100
86
75
The release declares a proprietary license, so it is licensed but may restrict adoption and redistribution compared with a permissive open-source dependency. No separate license file was detected.
Only one account has registry publishing access. This does not establish project inactivity, but it indicates limited visible publishing redundancy for a user-owned project.
The registry namespace and repository owner match, but the owner is a user account rather than an organization. This supports identity consistency without demonstrating institutional backing.
There are no open issues and one open pull request, but no issues or pull requests were merged in the last month. This is a mild maintenance concern rather than evidence of abandonment.
Composer is used for builds, but no security scanning tool is configured. The missing scanning is a process gap, while the build tooling itself is appropriate for the package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
php-di/php-di Version ^7.1 | — | — |
monolog/monolog Version ^2.11 | — | — |
ekvio-dev/integration-app-contracts Version ^4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.