The MIT license, stable release line, and organization backing make the package straightforward to adopt. Security guidance and automated security scanning are absent, while repository usage remains modest.
68%
Total Score
83
93
75
There were no commits and no active maintainers in the last three months, which is a maintenance concern, although the recent release and unarchived repository partly offset it.
Composer is used for builds, but no security-scanning tools were detected, leaving a modest transparency and assurance gap.
The repository has no security policy, so the process for reporting and handling vulnerabilities is unclear.
The single workflow was fully analyzed with no dangerous sinks or audit findings, but all four action references are unpinned, weakening build reproducibility and update control.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
slim/slim Version ^3.0 | — | — |
psr/http-factory Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.