The three-file package has no install-time scripts and only two declared runtime dependencies. Documentation and security-policy coverage are limited, and the repository has not yet built a maintenance track record.
58%
Total Score
50
100
75
83
The artifact has no README, tests, or changelog. Missing tests and changelog are normal for published artifacts, but a missing README is a real consumer-documentation gap for a library.
The package was first released today and has only three releases, so there is not enough history to demonstrate sustained maintenance. Its three same-day releases show active initial publishing but do not offset the lack of durability evidence.
The repository has zero commits and zero active maintainers in the last three months, consistent with its same-day age but providing no evidence of established maintenance capacity.
The repository name does not exactly match the package name, and no README package mention was collected. That leaves some uncertainty about repository ownership; the matching file tree provides limited compensation.
Composer build tooling is present, but no security-scanning tool was detected. The missing scanner is a modest transparency and hygiene gap rather than evidence of abandonment.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
niangpro/core Version self.version | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.