The package is small and clearly identified, with a straightforward dependency set and no install-time scripts. Its limited adoption and lack of security tooling reduce confidence in long-term support.
42%
Total Score
25
100
78
83
The last release was in July 2019, and there have been no releases in roughly seven years. This is strong evidence of abandonment risk despite the package having four releases and a stable version.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and providing no evidence of current maintenance.
Only one registry maintainer is listed, which creates a thin publishing base. The linked repository is clearly owned by the same individual, but that does not offset the lack of recent activity.
The repository has four stars, zero forks, and one watcher, indicating limited adoption and little community support to compensate for the inactive maintainer.
Composer is used for builds, which is appropriate, but no security scanning tools are configured. This is a modest transparency and maintenance gap for a package handling authentication-related forms.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
composer/installers Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.