The compact source tree lacks tests and a security policy, leaving limited evidence for ongoing quality and incident handling. MIT licensing, release notes, and organization-backed ownership provide useful transparency for this very new package.
68%
Total Score
75
83
50
Only two releases have appeared since the package was first published about one day ago, so there is not yet enough history to demonstrate durable maintenance.
The repository reports zero commits and zero active maintainers over the last three months, but the package itself is only about one day old, so this is limited evidence rather than abandonment.
Composer build tooling is present, but no security-scanning tooling was detected, leaving a modest quality and supply-chain hygiene gap.
No SECURITY policy is present, reducing transparency about vulnerability reporting and response for an account-security package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
marrow/ui Version ^1.0 | — | — |
marrow/framework Version ^2.2 | — | — |
marrow/form-builder Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.