The MIT license and release notes improve transparency. The repository has no tests or security policy, and all six recent commits came from one contributor, leaving limited evidence of long-term maintenance.
57%
Total Score
67
50
75
75
Six runtime dependencies, including two related iboxs packages and several PHP extensions, increase the dependency surface that consumers must maintain.
GitHub release notes exist for this version, but the repository and artifact contain no tests, and the package README is empty, limiting consumer guidance and validation evidence.
The repository owner is an individual account rather than an organization, so the single-contributor concentration is not visibly compensated by organizational backing.
Only one release has appeared in the 89-day package lifetime, so there is little release history from which to judge sustained maintenance.
One contributor made all six recent commits, leaving maintenance highly concentrated and creating a meaningful continuity risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
iboxs/basic Version * | — | — |
iboxs/basicapi Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.