The package has a clear README, stable versioning, recent release notes, and a small runtime dependency set. Organizational ownership helps, but recent work is sparse and entirely concentrated in one contributor, with no security policy or scanning.
62%
Total Score
67
100
94
83
All recent commits came from one contributor, creating a concentrated maintenance dependency. Organization ownership provides some handoff capacity but does not remove the observed concentration.
The repository recorded only one commit in the last three months and one active maintainer, indicating limited recent maintenance activity.
Composer is used for builds, but no security scanning tools were detected. That weakens supply-chain transparency for a package with runtime dependencies.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
cweagans/composer-patches Version ^1.7 | — | — |
helga-agentur/monitor-instance Version ^3.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.