The README is usable and installation has no lifecycle scripts, while the MIT declaration and matching organization repository improve transparency. Maintenance appears weak: there have been no recent commits or releases, with very little adoption and no security scanning.
48%
Total Score
75
83
75
The latest release was about two and a half years ago, and there were no releases in the last 12 months. The package has a long history but its current release cadence suggests abandonment risk.
There were no commits and no active maintainers in the last three months, consistent with the roughly two-and-a-half-year gap since the last repository push.
The repository has 1 star, 0 forks, and 2 watchers, indicating very limited external adoption. Popularity is supporting evidence, but this still weakens confidence in maturity.
Composer is used for builds, but no security scanning tools are present. This is a modest transparency and maintenance gap rather than evidence of an unsafe release.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.