The package has one maintainer and a small dependency footprint. Its only release is about six years old, leaving little evidence of active support for a new dependency.
10%
Total Score
50
100
17
Packagist marks the entire package as abandoned, with no replacement specified. This is a severe adoption risk and outweighs the otherwise small dependency footprint.
The package has only one release, published about six years ago, and none in the last 12 months. That provides strong evidence of abandonment rather than active maintenance.
Only one registry account has publish access. This is a thin administrative base and adds resilience risk, although access records do not prove who actively maintains the code.
The sole release is v0.0.1 and is not a stable major release, so the package offers little maturity evidence. Its non-prerelease status does not compensate for the lack of subsequent releases.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.