The 12-file package has a short README, a matching repository, and a minimal runtime dependency surface. The missing security policy and lack of security scanning leave limited transparency around ongoing support.
58%
Total Score
50
100
88
83
The package and repository are owned by the same individual account, providing clear ownership but no evidence of organization-level support.
Only two releases exist, both from June 15, 2025, with none in the following 15 months. That makes current maintenance and compatibility less certain.
There were no commits and no active maintainers in the three months measured before collection, consistent with an apparently dormant project after its initial launch.
Composer is used as the build tool, but no security-scanning tools are configured. This is a modest transparency gap for a package intended to be integrated into applications.
The repository has no security policy, leaving no documented channel or process for reporting vulnerabilities.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.