The README is concise, the package is licensed MIT, and it has no install-time scripts or registry deprecation. There is no security policy or automated security scanning, so future maintenance and review depend heavily on the original author.
58%
Total Score
78
88
The package has had only two releases, with none in the last 12 months; its latest release was about 5 years and 7 months ago. This is strong evidence of inactivity, although a small, stable Docker Compose package may need few changes.
The repository has 0 stars and 0 forks, with only 1 watcher. Popularity is supporting evidence rather than a verdict, but these values provide little evidence of community adoption or review.
Composer is used as a build tool, but no security-scanning tool is configured. This modestly reduces release-review transparency without making the package unfit by itself.
The linked repository has no security policy. For a small Compose-template package this is a transparency gap, though the package does not report install-time lifecycle scripts.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.