Tests, README, and a matching repository improve transparency, and the package has no install scripts. Its only release was in October 2021 and recent repository activity is absent, so maintenance risk is high.
45%
Total Score
0
80
75
This is the package's only release, published in October 2021, with no releases in the last 12 months. The long period without a newer release materially increases abandonment and compatibility risk.
The repository recorded zero commits and zero active maintainers in the last three months. Combined with the one-release history, this indicates no observed ongoing maintenance.
The repository has no published security policy. This is a transparency gap for a package that modifies HTTP response security headers, although it does not by itself show a security defect.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laminas/laminas-di Version ^3.2.2 | — | — |
laminas/laminas-mvc Version ^3.1.1 | — | — |
container-interop/container-interop Version ^1.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.