Tests, a usable README, and a small dependency surface make integration straightforward. The repository is not archived, and its workflow audit found no dangerous patterns, but the project has limited security tooling and remains an early-stage dependency.
44%
Total Score
0
100
72
75
Only two releases were published, both shortly after the first release, with no releases in the last 12 months; the latest release is about 20 months old. This is strong evidence of an immature or abandoned project.
There were no commits and no active maintainers in the last 3 months, reinforcing the broader evidence that development has stopped.
The repository has only 3 stars and 1 fork. Popularity is supporting evidence rather than a verdict, but these small numbers provide little evidence of broad community support.
Composer is used for the build, but no security-scanning tools are configured, leaving a modest repository hygiene gap.
The repository has no security policy, which reduces transparency for reporting and handling vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.