The MIT license, clear README, tests, release notes, and minimal runtime dependency make adoption straightforward. Security policy and automated security scanning are absent, so long-term assurance depends on the sole maintainer.
68%
Total Score
50
100
88
88
The repository is owned by an individual user rather than an organization, so the single-maintainer concentration is not offset by visible organizational backing.
The package is only 62 days old and has two releases published within minutes of each other, so its longer-term maintenance pattern is not established.
One contributor made 100% of the four recent commits, leaving maintenance highly concentrated and creating meaningful continuity risk.
Four commits were made in the last three months, showing recent activity, but the small volume offers limited evidence of sustained maintenance.
Composer build tooling is present, but no security-scanning tool was detected, leaving automated security coverage limited.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.