The package is very young, and the repository has no security policy or automated security scanning. Clear documentation, tests, stable releases, and active recent commits provide useful support, but maintenance depends on one person.
72%
Total Score
50
100
88
88
The repository is owned by an individual user, so the concentrated contributor activity is not offset by visible organization backing.
Five releases in the last 53 days show active early development, but the short project history leaves limited evidence of long-term maturity.
One contributor made 100% of the recent commits. Because the repository is user-owned rather than organization-owned, this concentration is a real continuity concern.
Ten commits in the last three months show recent activity, but all were made by one active maintainer, limiting evidence of sustained maintenance capacity.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest security-process gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.