The package includes a clear README, an explicit license, repository tests, and no install-time scripts. Organization backing and frequent recent releases help, but the short history and concentrated development leave limited evidence of long-term resilience.
68%
Total Score
88
100
83
75
The package is only 31 days old but has 12 releases, with a median interval of about 1.6 days. This shows active delivery but provides little long-term maintenance history.
One contributor made all 18 recent commits, creating a high bus-factor risk. Organization ownership provides some handoff capacity, but no second active contributor is shown.
The repository has no stars, forks, or watchers. Popularity is only supporting evidence, so this modestly limits external validation but does not by itself indicate poor health.
Composer build tooling is present, but no security scanning tool was detected. For a database client, the missing scanning layer is a meaningful but non-severe transparency gap.
The repository has no security policy. This weakens vulnerability-reporting transparency for a package handling database connections, though it is not evidence of abandonment by itself.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^3.0.2 | — | — |
revolt/event-loop Version ^1.0.9 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.