Clear documentation, release notes, and a licensed artifact support straightforward adoption. The project is young, and its security process is not documented.
68%
Total Score
75
86
50
All 154 recent commits came from one contributor, leaving no demonstrated handoff capacity if that maintainer becomes unavailable.
Composer is used for builds, but no security-scanning tools were detected, leaving supply-chain and code-quality checks less transparent.
The repository has no security policy, so its vulnerability-reporting and response process is not documented.
Version v0.2.4 is not a prerelease, but the package remains below 1.0, so its public API may still change materially.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
evgip/w3a-core Version ^0.3.1 | — | — |
erusev/parsedown Version ^1.8 | — | — |
phpmailer/phpmailer Version ^7.1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.