The package is easy to inspect and integrate, with a clear README, tests, MIT licensing, and only one runtime dependency. Its release and commit activity has stopped, so future fixes and compatibility updates are uncertain despite the repository remaining active enough to avoid an abandonment verdict.
62%
Total Score
50
100
81
50
The latest release was in January 2014, with no releases in the last 12 months; this long gap materially raises maintenance and compatibility risk.
The package and repository are owned by the same individual account, providing clear ownership but no organization-backed maintainer capacity.
There were zero commits and zero active maintainers in the last 3 months, reinforcing the concern that ongoing maintenance has effectively stopped.
There were no new or closed issues or pull requests in the last month, while 23 issues and 13 pull requests remain open; this suggests limited recent project activity.
Composer is used for builds, but no security scanning tool was detected; this is a modest transparency and hygiene gap for a mature package.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.