The project has recent releases, tests, release notes, and organization backing. Maintenance is concentrated in one contributor, with no security policy and half of workflow actions unpinned.
68%
Total Score
75
100
88
83
All three recent commits came from one contributor, creating a concentrated maintenance risk; organization backing provides some capacity to hand off ownership.
Two issues remain open and there was no issue or pull-request activity in the last month; this is a modest transparency concern, not evidence of abandonment by itself.
Composer build tooling is present, but no security scanning tool was detected, leaving security maintenance less visible.
The repository has no security policy, which leaves vulnerability reporting and response expectations undocumented.
The assessed version is not a stable major release, which indicates an immature API despite not being marked prerelease.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.