The stable API, focused dependency set, and release notes improve adoption confidence. The proprietary license and limited security and maintenance evidence increase long-term ownership risk.
52%
Total Score
50
100
79
83
The manifest declares a proprietary license, with no detected license text or license file. That creates a significant adoption and redistribution constraint for an open-source dependency.
The package has had no registry release for over 7 years, with five releases overall and none in the last 12 months. This materially raises abandonment and compatibility risk.
The repository recorded no commits and no active maintainers in the last 3 months; its last push was over 4 years ago. The non-archived repository and organization backing provide only limited compensation.
The repository has zero stars and forks, with 20 watchers. Low adoption is supporting evidence of limited maturity or validation, but does not determine health by itself.
The linked repository has no security policy, leaving vulnerability-reporting and response expectations undocumented. This is a transparency gap, though it is not evidence of a security incident.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
fei/audit-client Version ^2.0.0 | — | — |
objective-php/application Version ~1.1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.