Usable with caveats: the package is licensed, clearly backed by its matching repository, and not deprecated or archived. It has only two releases, no commits in the last three months, no tests or security policy, and very little repository activity, so maintenance confidence is limited.
58%
Total Score
67
81
90
Only two releases exist since the first release, with one release in the last 12 months and a median interval of about 163 days; this provides limited evidence of sustained maintenance.
The repository had zero commits and zero active maintainers in the last three months, which materially lowers confidence that problems will be addressed promptly.
There are no open issues or pull requests and no recent issue or pull-request activity, leaving little evidence of community maintenance or review.
The repository has zero stars, forks, and watchers, indicating little community validation; popularity is supporting evidence, so this is a concern but not severe on its own.
Composer is used as the build tool, but no security-scanning tool is present, leaving a modest transparency and maintenance gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.