Clear documentation, tests, licensing, and recent version-specific release notes support dependable use. The small dependency surface and absence of install scripts or deprecation also reduce adoption risk.
78%
Total Score
50
100
94
67
The repository is owned by an individual user rather than an organization, so the concentrated maintainer activity is not offset by visible organizational backing.
One contributor made all three commits in the last three months, giving the project a concentrated maintenance base. The recent activity is positive but does not provide contributor redundancy.
The repository received three commits in the last three months, showing recent activity. However, all activity came from one maintainer, so maintenance continuity remains dependent on that individual.
The project uses Make and Composer, but no security-scanning tooling was detected. This is a modest repository-hygiene gap, not evidence of abandonment.
The repository has no security policy. For a library that interacts with an external tracking service, this weakens vulnerability-reporting transparency but is not severe on its own.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.0|^8.0 | — | — |
symfony/serializer Version ^7.0|^8.0 | — | — |
symfony/property-access Version ^7.0|^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.