The README is usable and the MIT license is clear. The small dependency set and lack of install scripts reduce operational friction, but long-term maintenance capacity remains uncertain.
48%
Total Score
0
75
75
This is the package's only release, published over seven years ago, with no releases in the last 12 months. That strongly raises abandonment and compatibility risk.
The repository has no commits and no active maintainers in the last three months, while its last push was over six years ago. The stable artifact provides little evidence of ongoing maintenance.
Composer build tooling is present, but no security-scanning tools were detected. This modestly reduces release-process transparency without making the package unfit on its own.
The linked repository has no security policy. For a small library this is a transparency gap, though it is less serious than the lack of recent maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
claviska/simpleimage Version 3.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.