The package is small and straightforward to integrate, with tests and a clear MIT license. Its single release and absent recent commit activity make long-term maintenance uncertain; pin 1.0.0 if adopting it.
58%
Total Score
83
100
83
75
This package has only one release, published about 3.5 years ago, with no releases in the last 12 months. That is meaningful evidence of limited ongoing maintenance, although the linked repository was pushed more recently.
There were no commits and no active maintainers in the last 3 months. Combined with only one historical release, this raises the risk that maintenance has slowed or stopped.
The repository has no stars or forks and one watcher. Popularity is only supporting evidence, so this modest adoption signal lowers confidence in maturity slightly but is not decisive.
The repository uses Make and Composer, but no security scanning tools were detected. The missing scanning is a minor hygiene gap, not evidence that the package is unsafe or abandoned.
No repository security policy was found. This reduces transparency for reporting and handling vulnerabilities, though it is a secondary concern for a small package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
fond-of-oryx/erp-invoice Version * | — | — |
fond-of-oryx/company-deleter Version ^1.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.