The MIT license, small dependency surface, matching repository, and frequent releases support straightforward adoption. No security policy or scanning is visible, while recent work is concentrated in one maintainer.
68%
Total Score
67
100
89
67
The repository is owned by an individual user rather than an organization, so the single-contributor concentration is not compensated by visible organizational backing.
All 15 recent commits came from one contributor, so maintenance depends entirely on a single person and has limited handoff resilience.
The repository has zero stars, forks, and watchers. This is weak supporting evidence and lowers maturity confidence, but does not by itself make a small maintained package unsafe.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest transparency and maintenance-process gap.
The repository has no security policy, so there is no documented channel or process for handling vulnerabilities.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.