The package has a clear license, stable versioning, regular registry releases, and organization backing. Consumer documentation and repository security practices are limited, while recent repository activity is absent despite current releases.
68%
Total Score
75
100
88
83
The published artifact has no README, tests, or changelog, and the repository indicators show none either. Missing tests and changelog are not packaging gaps here, but the absent README reduces consumer transparency for a database library.
There were zero commits and zero active maintainers in the last 3 months. That weakens confidence in source-level maintenance, although the frequent registry releases provide partial counterevidence.
The repository uses Composer for builds, but no security scanning tool was detected. Build tooling is present; the missing scanning is a modest transparency and hygiene gap.
No repository security policy was found. This does not show a security defect, but it leaves vulnerability-reporting expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/container Version ^1.1.1 || ^2.0.2 | — | — |
symfony/finder Version ^7.2.0 | — | — |
mantle-framework/support Version ^1.0 | — | — |
mantle-framework/contracts Version ^1.0 | — | — |
alleyinteractive/wp-filter-side-effects Version ^1.0 || ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.