The small, tested codebase is clearly identified and has an MIT license, with no install-time scripts. Its maintenance record is effectively frozen, and the repository has no security policy or scanning.
40%
Total Score
78
83
Only two releases were published, with the latest on July 21, 2014 and none in the last 12 months. This long period without releases creates a strong abandonment and compatibility risk.
The repository has zero stars and zero forks, with one watcher. Popularity is not required for a healthy small package, but these numbers provide no supporting evidence of active community use or oversight.
Composer build tooling is present, but no security scanning tools are reported. Combined with the very old release history, this provides little evidence of ongoing dependency or vulnerability maintenance.
The repository has no published security policy, leaving no documented process for reporting or handling vulnerabilities. For a library that may be embedded in applications, this is a meaningful transparency gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.