The small artifact is clearly identified, MIT-licensed, and has a focused README with release notes. Its repository has had no commits in the last three months and no releases for over two years, making future fixes uncertain.
48%
Total Score
25
78
75
Only three releases were published, all within about three days in March–April 2024, with no releases in the following 12 months. This short, inactive history raises abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months. Combined with the release gap, this materially increases the risk that defects will remain unfixed.
The package and repository are owned by the same individual account, so there is no organization backing to compensate for the thin maintenance base.
The repository has one star, zero forks, and one watcher, indicating very limited adoption and external review. Popularity is supporting evidence rather than a verdict, but it provides little evidence of project resilience.
Composer is used for the build, but no security-scanning tooling is present. For a small package this is a hygiene gap, though it is less significant than the maintenance evidence.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.