The package includes tests, a README, a license, and no install scripts. Its small dependency footprint and organization-backed repository help, but repository security scanning is absent.
58%
Total Score
75
100
83
75
The package has 19 releases and a historically short median interval, but it has had no releases in the last 12 months and was last released nearly four years ago. This materially raises abandonment and compatibility risk.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap. The repository is not archived, but there is no recent activity showing ongoing maintenance.
The repository uses Composer for builds, but no security scanning tools were detected. The missing scanning is a hygiene gap, not evidence that the package is unsafe.
No repository security policy was found. This reduces transparency for reporting and handling vulnerabilities, though it is a process gap rather than proof of an active issue.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.