The small package has tests, documentation, and a simple dependency surface. Its repository is not archived and the release is licensed, but ongoing maintenance and workflow hardening are limited.
68%
Total Score
67
100
88
75
The package has existed since 2015 but has only four releases, with no release in the last 12 months and a median interval of about two years. This indicates slow maintenance, though the latest release is recent enough to avoid an abandonment verdict.
There were no commits and no active maintainers in the last three months. For a small library this may reflect stability, but it still weakens evidence of ongoing maintenance.
There are two open issues and no issue or pull-request activity in the last month. This is a modest sign of limited responsiveness, though the issue count is small.
The repository uses Composer, but no security-scanning tooling was detected. This is a transparency and maintenance gap rather than evidence that the release is unsafe.
No repository security policy was found. For a small stable library this is a hygiene gap, but it does not by itself indicate abandonment.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.