It has a clear MIT license, tests, a focused dependency set, and release notes for this version. Its single-maintainer project has no security policy, leaving future fixes and vulnerability handling uncertain.
55%
Total Score
83
100
88
88
The latest release was about 7 years ago, with no releases in the last 12 months. This is strong evidence of an unmaintained package, despite its six-release history.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the release gap and increasing abandonment risk.
Composer is used as the build tool, but no security scanning tool is present. The missing scanner is a minor hygiene gap, not a standalone reason to reject this small package.
The repository has no security policy, so there is no documented process for reporting or handling vulnerabilities. This is a transparency and maintenance gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.