Clear licensing, tests, and a matching source repository make the package easy to inspect. Its small user base, missing security policy, and unpinned workflow actions add operational concern.
61%
Total Score
75
100
83
75
The package has 10 releases since April 2017, but none in the last 12 months; the latest release was in June 2025. This indicates a mature but currently quiet project.
There were zero commits and zero active maintainers in the last three months, reinforcing that maintenance has currently gone quiet.
There are no open issues or pull requests and no recent issue or pull request activity. This is consistent with a small, quiet project but provides little evidence of active community maintenance.
The repository has only 1 star, 0 forks, and 1 watcher. This is weak supporting evidence of community adoption, though popularity alone does not determine health.
The repository uses Make and Composer for builds, but no security scanning tools were detected. The build tooling is positive; the missing scanning is a modest hygiene gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
tharos/leanmapper Version ^4.0 | — | — |
mbohuslavek/leanmapper-query Version ^1.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.