The README, recent release, and small dependency set make the package straightforward to evaluate and adopt. Maintenance relies on one contributor, with only two commits in three months and no security policy or automated security scanning.
67%
Total Score
50
100
88
67
The repository is owned by an individual account rather than an organization, so there is no visible organizational backing to offset the concentrated contributor base.
The package has four releases over 591 days, with only one release in the last 12 months; the release on August 26, 2026 shows it is not abandoned, but cadence is limited.
One contributor made all commits in the last three months, leaving maintenance fully concentrated in a single person.
Only two commits were recorded in the last three months, indicating limited recent maintenance activity despite the recent release.
Composer is used for builds, but no security scanning tools were detected, leaving security-maintenance practices less transparent.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
webman/console Version ^1.0 || ^2.0 || dev-master | — | — |
firebase/php-jwt Version >=5.4|^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.