One maintainer, no tests, and no security scanning leave little evidence of ongoing support. The MIT license, readable artifact, and lack of install scripts reduce adoption friction but do not offset the maintenance gap.
42%
Total Score
25
67
100
The latest release was in November 2022, with no releases in the last 12 months despite the package being nearly four years old. This is strong evidence of abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months, confirming that current maintenance activity has stopped.
Only one registry maintainer is listed, leaving limited publishing and support capacity. The repository is user-owned rather than organization-backed, so there is no provided evidence of broader maintenance support.
The package includes a readable README, but it has no tests or changelog; the missing tests reduce confidence in safe future maintenance, while the small artifact makes the gap less severe.
Composer is used for builds, but no security scanning tooling is present. This is a maintenance and transparency gap, though it is less significant than the lack of recent activity.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.