The MIT license, readable documentation, and release notes improve transparency. Long-term inactivity and the lack of security tooling leave maintenance and vulnerability response uncertain.
52%
Total Score
25
79
50
The package has had no registry release in about six years, with zero releases in the last 12 months; its earlier four-release history provides limited evidence of sustained maintenance.
The repository recorded zero commits and zero active maintainers over the last three months, consistent with the release gap and raising abandonment risk.
There has been no new or closed issue activity in the last month, while one pull request remains open; this offers little evidence of active project support.
Composer is used for builds, but no security-scanning tooling is present, reducing automated visibility into dependency or release risks.
The repository has no security policy, so there is no documented process for reporting or handling vulnerabilities in this framework setup.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.