Check or ping urls for http response/status codes.
58%
Total Score
caution
Usable with caveats: no release or commit activity for over three years, with a very small maintainer and user base.
Only one account has registry publish access, leaving limited publishing continuity. The repository is user-owned rather than organization-backed, so there is no provided evidence of a broader operational maintainer base to offset this.
The latest release was in January 2023, with no releases in the following 12 months and roughly three years and eight months since the last release. This is a substantial maintenance concern, though the package has a stable 1.0.0 release rather than a fragmented prerelease history.
The repository recorded zero commits and zero active maintainers in the last three months. Combined with the old last push, this indicates a sustained lack of active development.
The repository has four stars, zero forks, and one watcher, providing little evidence of a substantial user or contributor community. Low popularity is supporting evidence only, but here it offers no compensating maintenance capacity.
Composer is used for builds, but no security scanning tool is present. The missing scanner is a modest transparency and hygiene gap, not evidence that the package is unsafe by itself.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.