The repository is tiny and has no security policy, although it includes tests, a README, and an MIT license. Treat this as a legacy dependency rather than a maintained foundation for new work.
42%
Total Score
69
50
The package has had only three releases, with none in the last 12 months and the latest published in April 2018. This indicates a substantial abandonment risk for a dependency.
The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these counts provide little evidence of community support.
The project uses Composer build tooling, but no security scanning tools were detected. For a small package this is a hygiene gap, not by itself a severe dependency risk.
No security policy was found in the repository, leaving vulnerability reporting and response expectations undocumented.
The assessed version is v0.1.1 and is not a stable major release, so the package has limited maturity and may not offer a dependable compatibility contract.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.2 | — | — |
maatwebsite/excel Version ^2.1 | — | — |
illuminate/support Version 5.1.*|5.2.*|5.3.*|5.4.* | — | — |
symfony/dom-crawler Version >=2.7.0 | — | — |
kevinlebrun/colors.php Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.