The MIT license, tests, and matching README make the small library easy to inspect. Its repository has no security policy or scanning, so pin this version and monitor maintenance.
68%
Total Score
50
100
94
83
Only one account has registry publish access. That is a limited publishing base for continuity, although the linked repository shows an identifiable individual owner.
There were no commits and no active maintainers in the last three months, which weakens evidence of ongoing maintenance; the recent push shown by repository_archived partly offsets this.
Composer is used for builds, but no security scanning tooling is present, leaving a modest transparency and maintenance gap.
The repository has no security policy, so there is no documented process for reporting or handling vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^1.0.1 | — | — |
monolog/monolog Version ^2.8 | — | — |
hurah/data-types Version ^v1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.