The package is clearly matched to its repository and carries an MIT license with a usable README. Its small scope and lack of install-time scripts reduce integration risk, but future support remains uncertain.
55%
Total Score
75
81
75
The package has only two releases, with the latest published about eight years ago and no releases in the last 12 months. This materially raises abandonment and compatibility risk, although the repository is not archived.
There were no commits and no active maintainers in the last three months. Combined with the old registry release, this weakens evidence of ongoing maintenance.
Composer is used as the build tool, but no security scanning tools are configured. This is a hygiene gap rather than evidence that the package is unsafe to depend on.
The repository has no security policy, limiting transparency about vulnerability reporting and maintenance practices.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.