The package is documented, tested, licensed, and has only one runtime dependency. Its source remains available under organizational ownership, though future compatibility work is uncertain.
58%
Total Score
50
100
72
67
The package has made only one release, on October 27, 2022, with no releases in the last 12 months. This is strong evidence of a stagnant release process, although the repository remains available and the package is not deprecated.
There were zero commits and zero active maintainers in the last three months, against a last repository push in October 2022. Nearly four years without observed development makes fixes and compatibility updates uncertain.
The package defines post-install and post-update Composer scripts. These scripts add install-time behavior that deserves review, but their presence alone does not establish a health or maintenance failure.
The repository has zero stars, forks, and watchers. Popularity is supporting evidence only, so this lowers confidence in community support but does not independently make the package unsafe to adopt.
Composer is used as the build tool, but no security scanning tools were detected. The build setup is present, while the absence of scanning is a modest transparency and maintenance gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.