The source is a small 14-file library with no security scanning or security policy, so long-term support is difficult to verify. MIT licensing, a stable non-deprecated release, and a straightforward dependency profile are positive.
65%
Total Score
50
50
83
75
The package declares four runtime dependencies and no development dependencies; the runtime set is moderate, but the absence of development dependencies provides little evidence of project validation.
Only one registry maintainer is listed, leaving a thin publishing base and increasing continuity risk for a new package.
The package is brand new, with three releases published within hours and no established release history, so maturity is not yet demonstrated.
There were no commits in the last three months, although the repository was pushed on the assessment day; this leaves sustained maintenance unproven rather than showing clear abandonment.
Composer build tooling is present, but no security scanning tools were detected, which is a meaningful gap for an authentication library.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
niangpro/core Version self.version | — | — |
niangpro/http Version self.version | — | — |
niangpro/database Version self.version | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.