The package includes a clear README, tests, an MIT license, and very few runtime dependencies. Its maintenance evidence is weak, so adopting this authentication library would carry substantial abandonment risk.
38%
Total Score
50
100
75
75
The latest release was over 10 years ago, with no releases in the last 12 months. Only four releases exist, indicating a long-abandoned release line.
The repository recorded no commits and no active maintainers in the last three months, and its last push was over 9 years ago. This is strong evidence of inactive maintenance for an authentication library.
Composer is used for builds, but the repository has no security-scanning tools. That is a minor transparency and maintenance gap, especially for an authentication package, though it is secondary to the inactivity evidence.
The repository has no published security policy. For an authentication and authorization library, this weakens the project's disclosure and maintenance transparency.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.