It has a clear MIT license, a README, and only two runtime requirements. Its single-release history and no recent commits leave maintenance and compatibility uncertain; the missing security policy adds a smaller transparency gap.
40%
Total Score
25
100
81
75
The package has only one release, published in February 2021, with no releases in the last 12 months. This is strong evidence of abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and limited evidence of ongoing maintenance.
One individual has registry publishing access. That is consistent with a small personal project, but it provides little redundancy if the maintainer becomes unavailable.
Composer is used as the build tool, which supports reproducible package handling, but no security scanning tools are configured. This is a modest maintenance and transparency weakness.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. The small package scope limits the impact, but this remains a transparency gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.