The MIT license, focused dependency set, and matching repository make adoption straightforward. The source includes tests and a clean workflow audit, but ongoing project capacity is still limited.
68%
Total Score
67
100
83
67
The repository recorded zero commits and zero active maintainers over the last three months. For a package only a few months old, that is a meaningful maintenance concern.
The package is young at about four and a half months, with 11 releases in the past year and releases concentrated early in its life. This shows initial activity but does not yet establish long-term maintenance.
The repository has only 2 stars, no forks, and no watchers. Popularity is not required for health, but this provides little independent evidence of adoption or community support.
Composer is used for the build, but no security scanning tools are present. The missing scanner is a modest transparency gap, not a severe dependency risk by itself.
The repository has no security policy. That makes vulnerability reporting and response expectations less transparent, especially for a client handling API credentials.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.