The package is well documented, licensed, tested, and has a stable release history. Recent activity is light and concentrated in one contributor, but organization backing reduces handoff risk; no security policy or scanning is a transparency gap.
78%
Total Score
75
100
94
67
Only one commit from one active maintainer was recorded in the last three months, showing light recent maintenance despite the recent release.
There is one open issue but no issues or pull requests were opened or closed in the last month, indicating limited recent community activity.
Composer build tooling is present, but no security scanning tools were detected, leaving security hygiene less transparent.
The repository has no security policy, so vulnerability-reporting expectations are not documented.
No GitHub Actions workflows were present to audit. This avoids workflow-specific risks but provides no evidence of automated validation or security controls.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
neos/flow Version ^9 | — | — |
sitegeist/kaleidoscope Version * | — | — |
packagefactory/atomicfusion-classnames Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.