Its tiny audience and no commits in the past three months limit evidence of broad support. Unpinned CI actions and no security scanning are modest hygiene concerns, while the documented tests and release notes help offset them.
76%
Total Score
75
100
83
83
The package has existed for about 9 years but only four releases, with a median interval of about 308 days. A release within the last year shows it is not abandoned, though development is infrequent.
There were no commits and no active maintainers in the past three months. The recent release provides some counterevidence, but ongoing maintenance activity is currently thin.
The repository has one star and no forks, indicating very limited public adoption. Popularity is only supporting evidence, so this lowers confidence in community support without making the package unfit.
Composer and Make are used for project tooling, but no security-scanning tool was detected. The missing scanner is a modest transparency and hygiene gap.
The repository has no security policy. This limits the project's stated process for receiving and handling vulnerability reports.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
respect/validation Version ^2.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.