The package is tiny and clearly scoped, with a README, MIT declaration, and no install-time scripts. Its source has no tests, security scanning, or recent activity, so maintenance risk is significant.
44%
Total Score
0
75
75
Only two releases were published, both in September 2018, with no release in roughly eight years. That strongly raises abandonment risk despite the package's small scope.
There were no commits and no active maintainers in the previous three months. Combined with the old release history, this is strong evidence that maintenance has stopped.
Composer is used as the build tool, but no security scanning tools are configured. For a small library this is a hygiene gap rather than a standalone severe risk.
The repository is not archived, although its last push was in August 2019, which does not offset the broader evidence of inactivity.
The repository has no security policy. This limits vulnerability-reporting transparency, though the package's narrow scope keeps the impact moderate.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.