The package is small and lightly supported, with no security policy or automated security scanning. Its MIT declaration, clear README, and minimal dependencies provide useful transparency, but recent maintenance evidence is absent.
48%
Total Score
0
100
78
75
The latest release was about 3 years 11 months ago, with no releases in the last 12 months. Four total releases show a small history and limited evidence of ongoing maintenance.
The repository recorded no commits and no active maintainers in the last 3 months, reinforcing the long release gap and creating meaningful abandonment risk.
The repository has zero stars and forks and only one watcher, providing little community evidence to compensate for the inactive maintenance record. Popularity is supporting evidence, not decisive on its own.
Composer build tooling is present, but no security scanning tools were detected. This is a modest transparency and maintenance gap rather than a severe risk by itself.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented for a package that processes image files.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.