The package has a clear README, a license file, and a very small dependency surface. It lacks security scanning and has no active project signals supporting future maintenance or verification.
42%
Total Score
0
100
79
75
The latest release was about four years ago, with no releases in the past 12 months. That strongly raises abandonment risk for a package developers may need to keep compatible with current Drush and Blackfire versions.
The repository recorded zero commits and zero active maintainers over the past three months, consistent with the long release gap. No provided activity signal compensates for this lack of recent maintenance.
Composer is used for the build, which is appropriate, but no security-scanning tools are configured. This reduces evidence that dependency and release issues are being checked automatically.
The repository has no security policy. For a small integration package this is a transparency gap, although it is less serious than the absence of recent maintenance.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.