The MIT license and matching repository make its origin and reuse terms clear. Its tiny artifact has no README or security policy, leaving little evidence for safe long-term integration.
38%
Total Score
50
100
69
75
The package has no README, which is a meaningful integration gap for a library consumers must understand. The missing tests and changelog are normal for published artifacts and do not add concern here.
This package has only one release, published over six years ago, with no releases in the last 12 months. That is strong evidence of abandonment risk, despite the repository not being archived.
The repository has no recent issue or pull-request activity, consistent with the absence of releases and providing no evidence of active maintenance.
The repository has zero stars and forks and only one watcher. Popularity is not decisive, but these figures provide no supporting evidence of adoption or community maintenance.
Composer is used for builds, which is appropriate for this package, but no security-scanning tooling is present. That leaves maintenance and vulnerability checks less visible.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.