The repository has no security policy, and community activity is minimal. The package is licensed, documented, and had ten releases in its first 142 days, but recent maintenance is unproven.
68%
Total Score
75
89
50
The repository recorded zero commits and zero active maintainers during the last three months. Although the package is young and had a recent release, this leaves current maintenance capacity uncertain and lowers the score.
The repository has one star, no forks, and no watchers. Popularity is only supporting evidence, but these very small numbers provide little external validation for a dependency.
Composer build tooling is present, but no security scanning tools were detected. This is a modest repository-hygiene gap rather than evidence that the release is unsafe.
The repository has no security policy. For a small package this is a transparency gap, though the MIT license, README, tests, and organization backing provide some compensating context.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
marko/env Version self.version | — | — |
marko/core Version self.version | — | — |
marko/vite Version self.version | — | — |
marko/inertia Version self.version | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.