Tests, release notes, licensing, and clean workflow checks support dependable packaging. The small project footprint and absent security policy leave limited maintenance redundancy.
68%
Total Score
50
88
75
The repository is owned by an individual rather than an organization, so there is no organizational backing shown to offset the concentrated contributor base.
Only four releases have appeared over about 2 years and 9 months, with one release in the last 12 months and a typical gap of about 8 months. This indicates a small, slow-moving project rather than active release maintenance.
One contributor made all commits in the last 3 months, leaving maintenance dependent on a single active person.
Only one commit was recorded in the last 3 months, showing limited recent development activity.
Composer is used for builds, but no security-scanning tool was detected. This is a modest transparency and maintenance gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
sabre/uri Version >=2.2.2 | — | — |
illuminate/filesystem Version ^12.0 || ^13.0 | — | — |
league/flysystem-webdav Version ^3.28 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.