The package includes tests, a readable package entry point, and a simple runtime dependency. Its tiny release history and dormant repository leave little evidence that bugs or compatibility issues will be addressed.
44%
Total Score
0
100
69
50
Only two releases exist, both from August 2023, with no releases in the last 12 months. This provides weak evidence of ongoing maintenance for a package consumers may need to keep compatible.
There were no commits and no active maintainers during the last three months, following a last repository push in August 2023. This is strong evidence of abandonment risk.
The repository has zero stars and forks and one watcher. Low visibility is not decisive for a small package, but it offers no supporting evidence of community adoption or resilience.
Composer is used for the build, but no security scanning tools are configured. This is a hygiene gap that matters somewhat for a package handling an external SMS API, though it is not evidence of unsafe code.
The repository has no security policy. That weakens vulnerability-reporting transparency, although the package's small scope and existing tests provide limited compensation.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.7 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.