The package has clear documentation, an MIT license, and a focused four-dependency footprint. Its source repository has had no commits from any maintainer in the last three months, and it lacks security scanning, so future maintenance should be treated cautiously.
62%
Total Score
50
100
79
75
No commits and no active maintainers were recorded in the last three months, despite the package being recently released; this is meaningful evidence of stalled maintenance.
The package is only 172 days old and published four releases in a short burst, with no longer track record to demonstrate sustained maintenance.
Composer build tooling is present, but no security scanning tool was detected. That is a transparency and hygiene gap rather than evidence that the release is unsafe.
The repository has no published security policy, leaving vulnerability-reporting expectations unclear for a backend package.
Version v0.2.1 is not a stable-major release, which signals an early-stage API and possible compatibility changes, though it is not marked as a prerelease.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
mako/framework Version 10.* || 11.* || 12.* | — | — |
inventor96/inertia-mako Version 1.* || 2.* | — | — |
inventor96/inertia-offline Version ^0.2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.