A complete README, broad tests, and a matching organization-owned repository provide useful transparency. The package has no security scanning or policy, and its maintenance record is still too short to establish durability.
68%
Total Score
83
100
78
83
This is the first release, published today, with only one release recorded and no established release cadence. That is expected for a new package but leaves long-term maintenance unproven.
The repository has no commits or active maintainers recorded in the last three months, although it was pushed recently and the package is newly published. There is not yet enough history to demonstrate sustained maintenance.
The repository has no stars, forks, or watchers. For a package released today this is not strong negative evidence, but it provides no supporting adoption signal.
Composer is used for the build, providing basic project tooling, but no security scanning tools were detected. The missing scanning lowers assurance modestly without indicating abandonment.
No security policy was found in the repository. This is a transparency gap for a package that handles API credentials, though it is not evidence that the release is unsafe.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
saloonphp/saloon Version ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.