Its published artifact is extremely small and offers little consumer documentation. The declared Apache-2.0 license and release notes are modest positives, but they do not establish ongoing support.
12%
Total Score
25
100
33
100
Packagist marks the entire package as abandoned, with no replacement provided. This is a direct warning that developers should not take a new dependency on it.
Only one release exists, published about 7 years ago, with no releases in the last 12 months. This strongly indicates abandonment.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with its archived state and lack of ongoing maintenance.
The linked repository is archived and was last pushed about 7 years ago, indicating the source is no longer maintained.
The artifact has no README, tests, or changelog, although the release has GitHub notes stating it is the first release. The release notes provide a small transparency benefit, but consumer documentation remains limited.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.