The organization-owned repository matches the package, and registry publishing shows regular distribution. The short README, absent tests, no security policy, and no recent commits leave limited evidence for maintenance quality.
69%
Total Score
83
100
83
83
A README is present, but it is only 113 characters and the package and repository report no tests or changelog. Missing tests and changelog are normal packaging practice, while the minimal README limits consumer guidance.
The repository recorded zero commits and zero active maintainers during the last three months. Recent registry releases partly compensate, but the lack of source activity weakens evidence of ongoing maintenance.
The repository has zero stars, one fork, and one watcher, indicating limited external adoption or review. Popularity is supporting evidence only, so this modestly lowers confidence rather than determining the verdict.
Composer is used for builds, but no security scanning tools are configured. The missing scanning is a maintenance and transparency gap, though it is not severe on its own.
The repository has no security policy, leaving no documented process for reporting vulnerabilities or communicating security fixes.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
hyperf/context Version ~3.1.0 | — | — |
nikic/fast-route Version ^1.3.0 | — | — |
hyperf/http-server Version ~3.1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.