The project is only 153 days old and has made one release, with no commits or active maintainers in the last three months. It has a clear README, a small dependency set, and no install-time scripts, but lacks tests, security scanning, and a security policy.
58%
Total Score
50
100
81
75
One registry publishing account is present. That is a limited publishing base, though the linked project is user-owned and the count alone does not establish abandonment.
The registry namespace and source repository are tied to a user-owned project rather than an organization, so the single maintainer signal is not offset by visible organizational backing.
The package is 153 days old with only one release, so there is little evidence of release maturity or sustained maintenance.
There were zero commits and zero active maintainers in the last three months, providing no recent evidence that defects or compatibility changes will be addressed.
The repository has no stars, forks, or watchers. This is weak supporting evidence rather than a decisive health problem for a small package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
monolog/monolog Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.