The package includes substantial documentation, a changelog, and a clear MIT license. Low adoption and no published security policy are the main remaining limitations.
78%
Total Score
67
88
75
The repository is owned by a user account rather than an organization, so the small maintainer base offers limited formal handoff capacity.
The package has four releases across roughly five and a half years, with one release in the last 12 months and a median interval of about 584 days. This is slow but partly offset by recent repository activity.
Two contributors were active in the last three months, but one made six of seven commits. This concentration leaves the project somewhat dependent on a single primary contributor.
Composer build tooling is present, but no security-scanning tool is configured. That is a modest transparency and hygiene gap, not evidence of unsafe code.
The repository has no published security policy, leaving vulnerability reporting and response expectations unclear.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.