Usable with caveats: the repository is active, licensed, documented, and backed by an organization, but this is a brand-new release with only one recent contributor. There is also no security policy or automated security scanning, so adoption should include your own review and monitoring.
68%
Total Score
83
100
86
88
This is the package's first and only release, published 0 days ago, so there is no track record for release stability or long-term maintenance.
One contributor made 100% of the 13 recent commits, creating a genuine continuity risk. Organization backing partly compensates because maintenance can potentially be handed off internally, but no second active contributor is shown.
Composer build tooling is present, but no security scanning tools are detected, leaving a security-maintenance gap for consumers to compensate for themselves.
The repository has no security policy, so there is no documented process for reporting or handling vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ^12 || ^13 | — | — |
guzzlehttp/psr7 Version * | — | — |
fairway/netx-fal-api Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.