The package is clearly licensed, has no install-time scripts, and is not deprecated or archived. Its single-maintainer project has had no release since April 2018, with no tests, README, or security policy to show ongoing care.
38%
Total Score
50
67
67
The latest release was in April 2018, and there have been no releases in the last 12 months. This long period without releases is strong evidence of abandonment risk.
Only one registry maintainer is listed. That is normal for an individual project, but combined with the lack of releases since 2018 it leaves little visible maintenance capacity.
The repository contains only 14 files, focused on source interfaces and traits, with no visible tests or documentation. The small, focused implementation is not itself a problem, but the missing supporting material limits transparency.
The package and repository have no README or tests, while the repository also has no changelog. Missing tests and consumer documentation materially reduce confidence for a library this small.
Composer is used for project tooling, but no security-scanning tool is present. This is a modest maintenance and supply-chain hygiene gap rather than a severe risk on its own.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.