It has a clear MIT license, minimal runtime dependencies, and a recent release with notes. The repository lacks security scanning and a security policy, limiting assurance for long-term use.
70%
Total Score
50
100
83
50
One contributor made all commits in the last three months, leaving maintenance dependent on a single active person. The linked repository is user-owned, so there is no organizational handoff evidence to offset this concentration.
Only one commit was recorded in the last three months, indicating limited recent development activity despite the recent release. This is a maintenance concern, but not evidence of abandonment by itself.
The repository has zero stars and forks and one watcher. Popularity is only supporting evidence, but these numbers provide little external evidence of broad review or community support.
Composer is used for the build, but no security scanning tools were detected. The build tooling is appropriate, while the missing security automation leaves a modest assurance gap.
The repository has no security policy. For a reusable utility library this reduces transparency around vulnerability reporting and response expectations.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.