The source repository has no recent commits, no security scanning, and no published security policy. A clear README, MIT licensing, a stable release, and organizational backing provide useful transparency, but maintenance appears dormant.
57%
Total Score
75
100
83
83
The package has had no releases in the last 12 months, and its latest release was published nearly four years before collection. This is a meaningful maintenance concern, though the package has an established release history.
The repository recorded zero commits and zero active maintainers in the last three months. Combined with the old latest release, this supports a dormant-maintenance concern.
There were no new or merged issues or pull requests in the last month, and no open issues or pull requests. This is consistent with a quiet project but does not by itself prove abandonment.
The repository has zero stars, one fork, and one watcher, indicating limited visible adoption. Popularity is only supporting evidence, but it provides little extra confidence in a project with no recent activity.
Composer build tooling is present, but no security scanning tools are configured. The missing security automation is a modest transparency and maintenance gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.