The README and matching repository make the package easy to inspect and integrate, while its small dependency set keeps installation simple. It lacks security scanning and documented security procedures, leaving little evidence of ongoing project oversight.
42%
Total Score
0
100
78
75
The package has only one release, published over four years ago, with no releases in the last 12 months. This provides little evidence of continuing maintenance for a database integration library.
The repository recorded no commits and no active maintainers during the last three months, consistent with the long release gap. The repository is not archived, but that does not offset the lack of observed activity.
The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these figures provide no meaningful adoption or review signal.
Composer is used as the build tool, but no security scanning tools are configured. The build setup is appropriate for the package, while the missing scanning reduces ongoing oversight.
The repository has no security policy, so there is no documented path for reporting or handling vulnerabilities. This is a transparency and maintenance gap, though not severe on its own.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.