The small runtime dependency surface and declared MIT license make adoption straightforward. Limited documentation, no recent repository activity, and weak workflow and security hygiene reduce confidence in ongoing maintenance.
52%
Total Score
50
100
75
50
The artifact has no README, but absent tests and changelog files are normal for published artifacts and are not concerns by themselves. The missing README is a modest documentation gap for a framework library.
The package published 26 releases in a concentrated period of about one week, but there is no release activity after April 13, 2026; this suggests momentum may have stalled.
The repository recorded zero commits and zero active maintainers over the last three months, leaving little evidence of sustained maintenance after the initial release burst.
The repository name does not match the package name, and the README could not be checked for a package mention. This creates some uncertainty about whether the linked repository is the package's direct source.
Composer is used for the build, but no security scanning tooling is present, reducing automated visibility into dependency or source issues.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/container Version ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.