Usable with caveats: the package has a stable release, clear documentation, tests, a small dependency footprint, and an active-looking repository. However, it has had no commits in the last three months, minimal adoption, and no security policy or automated security scanning.
68%
Total Score
75
100
89
83
There were no commits and no active maintainers in the last three months. Although the package had a release within the last year, this recent inactivity is a meaningful maintenance concern.
The repository has only four stars, zero forks, and one watcher. Low popularity is not disqualifying for a niche package, but it provides little evidence of broad review or community support.
Composer is used as the build tool, but no security scanning tools are configured. The absence of scanning modestly reduces supply-chain transparency, while the normal Composer setup remains appropriate.
The repository has no security policy. For a small library this is a hygiene gap rather than a severe risk, but it leaves vulnerability-reporting expectations unclear.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
fakerphp/faker Version 1.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.