The small, user-backed project has little adoption evidence and no published security policy. It is licensed and has a README, but the maintenance gap makes long-term support uncertain.
45%
Total Score
50
100
69
88
The latest release was nearly two years ago, with no releases in the last 12 months. This is strong evidence of inactive maintenance for a young library.
The repository is owned by an individual user rather than an organization, so there is no demonstrated organizational backing to offset the thin maintenance and adoption evidence.
There are no open issues or pull requests and no recent issue or pull-request activity. This does not prove abandonment, but it provides no evidence of an active community.
The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these counts provide little evidence of broad community support.
Composer is used for builds, but no security-scanning tools are configured. The missing scanning is a hygiene gap, not a severe dependency risk on its own.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.