The package includes a clear README, MIT licensing, a matching repository, and no install-time scripts. There is no security policy or scanning, so maintenance safeguards remain limited.
67%
Total Score
50
88
83
This release is from a package that is less than a day old, with four releases arriving over roughly 30 minutes and a median interval of about 8 minutes. That shows active initial publishing but provides no long-term maintenance track record.
All six recent commits come from one contributor, leaving no demonstrated contributor redundancy if that maintainer becomes unavailable.
The repository has six commits in the last three months, showing recent work, but the activity is concentrated in a single active maintainer.
Composer is used as a build tool, but no security-scanning tools were detected. This is a modest maintenance and supply-chain hygiene gap.
The repository has no security policy, so it gives users no documented channel or process for reporting vulnerabilities.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.