The repository has no security policy or scanning, and its tiny footprint offers little evidence of ongoing support. It is not deprecated or archived, and installation has no lifecycle scripts.
38%
Total Score
100
56
75
Only two releases were published, with the latest about five years ago and none in the past 12 months. This is strong evidence of stalled maintenance for a library dependency.
No registry declaration, license file, or repository license file was detected, leaving the legal terms for using this package unclear.
The package has no README, which makes integration harder for consumers; absent tests and changelog are normal packaging gaps and do not independently lower health.
The repository has zero stars and forks and only one watcher. Popularity is not decisive, but these counters provide no supporting evidence of community adoption or review.
Composer is used for builds, but no security-scanning tooling is present. This is a transparency and maintenance-hygiene gap rather than evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.