Usable with caveats: the package is small, licensed, tested, and clearly backed by the matching repository. However, its last release and repository push were about 7 years ago, with no recent commits, so ongoing maintenance should not be expected.
58%
Total Score
50
100
75
90
There were 0 commits and 0 active maintainers in the last 3 months, with the repository last updated about 7 years ago. This is the strongest evidence that future fixes and compatibility updates may not arrive.
The package has only 4 releases and none in the last 7 years, indicating that development has stopped or become highly infrequent. Its short early release intervals show some initial activity but do not compensate for the long period since the latest release.
There are no open issues or pull requests and no recent issue or pull-request activity. This is orderly but, alongside the absence of commits, provides no evidence of an active maintenance process.
The repository uses Composer build tooling, but no security scanning tools are configured. The missing scanning is a transparency gap, though it is less significant for this small, dependency-free package.
The linked repository is not archived, so it remains technically available for maintenance. However, its last push was about 7 years ago, consistent with the stale release history.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.