Clear documentation, tests, licensing, and no install-time scripts make integration straightforward. The pre-1.0 version and absent security automation leave less evidence for long-term support.
58%
Total Score
0
100
75
75
The repository recorded zero commits and zero active maintainers in the last 3 months, and its last push was about 6 months ago; this is a meaningful sign of stalled maintenance.
Seven releases in about 31 days show an initial burst of publishing, but the package is only about 188 days old, so there is limited long-term maintenance history.
The project uses Make and Composer, but no security scanning tools were detected, leaving a modest security-process gap.
No SECURITY.md or other security policy was found, reducing transparency for reporting and handling vulnerabilities in an authentication-related adapter.
The release is on the 0.x line rather than a stable major version, which indicates the API may still change and provides less maturity evidence.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
google/auth Version ^1.50 | — | — |
fusio/engine Version ^6.0 | — | — |
guzzlehttp/guzzle Version ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.