Usable with caveats: the package is clearly backed by its matching repository, has a readable README, and carries an MIT declaration. However, it has had only one release and no repository push for about two years, with no tests or security policy, so maintenance risk is significant.
56%
Total Score
100
100
71
67
The matching repository and package contain only four files, including a README and two source files. This may be appropriate for a small adapter, but it offers little visible project structure or testing support.
The package includes a substantial README, which supports consumer usability. Tests and a changelog are absent, but their absence from the published artifact is normal; the repository also reports no tests, leaving limited validation evidence.
This is the only release, published about two years ago, with no releases in the last 12 months. That limited history provides little evidence of ongoing maintenance.
Composer is used for the build, but no security scanning tool is present. This is a modest transparency and maintenance gap for a package that handles identity-related integration.
The repository is not archived, which is positive, but its last push was about two years ago. The lack of recent source activity remains a maintenance concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.