The package includes a substantial README, tests, an MIT license, and active recent commits. Maintenance is concentrated in one contributor, and the repository has no security policy or scanning tools, while organization ownership provides some continuity.
72%
Total Score
83
100
94
67
All 21 recent commits came from one contributor, leaving maintenance highly concentrated; organization ownership offers some continuity but does not remove the single-contributor risk.
Composer build tooling is present, but no security-scanning tools were detected, leaving security checks less visible.
The repository has no security policy, reducing transparency about how vulnerabilities should be reported and handled.
No GitHub Actions workflows were present, so there are no workflow hazards or unpinned actions to penalize; this also provides no evidence of automated CI or security checks.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/http-message Version ^2.0 | — | — |
kinetis/framework Version ^1.21.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.