The project is young and has a very small recent contributor base. Its organization backing, regular releases, repository tests, matching source repository, and clear MIT licensing provide useful support, but the absent security policy leaves a transparency gap.
68%
Total Score
75
86
75
One contributor made all recent commits, concentrating maintenance responsibility in a single person; organization backing partly reduces handoff risk but does not remove it.
Only one commit was recorded in the last three months, indicating limited recent development activity despite the recent release history.
Composer build tooling is present, but no security-scanning tool was detected, leaving a modest process gap.
The repository has no security policy, reducing transparency about how vulnerabilities should be reported and handled.
Version 0.44.1 is not on a stable major version, so its API may still change, although it is not a prerelease and recent releases have been stable.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
cuyz/valinor Version ^2.4 | — | — |
flow-php/postgresql Version self.version | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.