The README is concise, the repository matches the package, and installation has no lifecycle scripts. Its four-file project has no security scanning, limiting confidence in ongoing maintenance.
42%
Total Score
25
79
75
Only two releases were published, both in August 2021, with no releases in roughly five years. This is strong evidence of abandonment risk despite the stable version.
The repository recorded zero commits and zero active maintainers in the last three months, and its last push was in August 2021. No recent activity is visible to support ongoing maintenance.
The package has one registry maintainer, so continuity depends on a single person. The matching user-owned repository provides some ownership clarity but no compensating activity.
Composer is used for the build, which is appropriate, but no security scanning tools are configured. For a small package this is a hygiene gap rather than evidence of immediate unfitness.
The repository has no security policy. This reduces transparency for reporting and handling vulnerabilities, though the package is small and its source is easy to inspect.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.