The MIT license, matching repository, and very small dependency surface make the package easy to inspect and integrate. One registry maintainer and no repository security scanning provide limited ongoing oversight.
55%
Total Score
67
100
83
75
The latest release was published over 8 years ago, with no releases in the last 12 months. Its seven-release history shows an established stable package, but the long pause raises abandonment risk.
There were no commits and no active maintainers in the last 3 months, consistent with the long release pause and leaving little evidence of current maintenance capacity.
One issue remains open, with no new or closed issues or pull requests in the last month. This is a minor sign of limited current project activity rather than a severe risk by itself.
The repository has zero stars and one fork, so there is little public adoption evidence. Popularity is only supporting evidence, and the matching source and clear license are stronger signals here.
Composer is used for the build, but no security scanning tools were detected. The missing scanning is a modest oversight concern, while the standard build tooling is appropriate.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.