The MIT license and matching source tree make the release transparent. Consumers get no README or tests, and the small dependency set does not offset the lack of ongoing project activity.
42%
Total Score
50
67
50
The MIT-licensed package has no README, tests, or changelog. Missing tests and changelog are normal for published artifacts, but the absent README is a real integration gap for this library.
Only two releases were published, both in April 2023, with none in the last 12 months; this strongly suggests the package may be abandoned.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long gap since its last push and raising maintenance risk.
The linked repository has no security policy, leaving no documented process for reporting or handling vulnerabilities; the package's otherwise clear licensing and source tree provide only partial compensation.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
amphp/amp Version ^3.0 | — | — |
nyholm/psr7 Version ^1.7 | — | — |
psr/http-client Version ^1.0 | — | — |
amphp/byte-stream Version ^2.0 | — | — |
amphp/http-client Version ^5-beta | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.