It has an MIT license, a small dependency surface, tests, and no install-time scripts. The repository matches the package and is orderly, but adoption depends on code that has not been maintained for about 10 years.
43%
Total Score
0
100
75
83
The package has only 4 releases, with the latest published about 10 years ago and none in the last 12 months. This is strong evidence of abandonment for a dependency that may need compatibility updates.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the release history showing no activity for about 10 years.
The repository has 0 stars and 0 forks, with 1 watcher. This offers little supporting evidence of adoption, although popularity alone is not decisive.
Composer is used as the build tool, but no security scanning tool is present. The missing scanning is a hygiene gap, while the more consequential concern remains the lack of maintenance activity.
The repository has no security policy. This limits the documented process for reporting vulnerabilities, though it is less significant than the package's prolonged inactivity.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.