Clear licensing, repository tests, release documentation, and a matching source tree support adoption. Ongoing maintenance capacity is narrow, so future fixes may depend on limited activity.
70%
Total Score
70
100
94
83
All one recent commit came from a single contributor, concentrating near-term maintenance activity; organization ownership partly offsets the handoff risk.
Only one commit was recorded in the last three months, indicating sparse recent maintenance despite the recent release and repository push.
There are seven open issues and two open pull requests, with one pull request merged in the last month; this shows some activity but not a broad support pace.
The project uses Composer, but no security-scanning tooling was detected, leaving a modest transparency and maintenance-hygiene gap.
The repository has no security policy, which makes vulnerability reporting and response expectations less explicit.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/psr7 Version ^1.9.1||^2.6.3||^3.0 | — | — |
guzzlehttp/guzzle Version ^6.5.8||^7.8.2||^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.