Clear documentation and a small dependency surface help integration. The single-maintainer project has no tests or security policy, limiting confidence in long-term coverage.
76%
Total Score
75
100
88
83
Only one registry account, Hechuan, has publish access. For a user-owned small project this is a thin maintainer base and increases continuity risk if that person stops maintaining it.
The repository has 0 stars, forks, and watchers, so there is little external adoption evidence to support the project's durability. Popularity is only supporting evidence, so this is a modest concern for a small package.
Composer is used as the build tool, but no security-scanning tools are configured. The missing scanning coverage is a minor repository hygiene gap.
The linked repository has no security policy. That is a transparency and reporting gap, although it is not by itself evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.