Usable with caveats: the package is clearly structured, licensed, tested, and backed by an organization, but it is a brand-new v0.1.0 release with no demonstrated maintenance history and no security policy or scanning.
62%
Total Score
88
100
75
90
This is the package's first release, published 0 days ago, so there is no release history demonstrating sustained maintenance or compatibility over time.
The repository has no commits in the last three months and no active maintainers in that period, although it was pushed on the assessment date. The package is too new to demonstrate an established maintenance cadence.
The repository has zero stars, forks, and watchers. For a package released today this is weak supporting evidence rather than a standalone health failure.
The repository uses Make and Composer for build or project tooling, but has no detected security scanning tools. The missing scanning is a transparency and assurance gap for a native PHP extension.
The repository has no security policy. For an HTTP-speaking native extension, the lack of documented vulnerability-reporting guidance is a genuine security-maintenance gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.