The small dependency surface and lack of install-time scripts reduce operational risk. The package is licensed and not archived, but its support and verification evidence are limited.
38%
Total Score
50
100
67
75
The package has only one release, published over six years ago, with no releases in the last 12 months. That strongly raises abandonment and compatibility risk.
The artifact has no README, tests, or changelog, and the repository also reports no tests or changelog. Missing tests and changelog are normal packaging gaps, but the absent README weakens consumer guidance for a library.
There were no commits and no active maintainers in the last three months, consistent with the very old sole release and indicating little current maintenance capacity.
The repository has zero stars, forks, and watchers. Popularity is not required for a healthy package, but these counts provide no supporting evidence of community adoption or review.
Composer is used as the build tool, but no security scanning tools are configured. That leaves a modest verification gap without proving the package is unsafe.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
lsys/core Version ~0.0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.