The project is tiny and has no security policy, leaving little evidence of ongoing support or security practice. Its clear MIT licensing and documented release do not offset the long period without updates.
42%
Total Score
72
75
Only one release was published, on January 19, 2020, with no releases in the following six years; this is strong evidence of abandonment risk.
The repository has zero stars and forks and only one watcher, providing little community evidence to compensate for the lack of recent maintenance.
Composer is used for the build, but no security scanning tool is present, leaving a modest supply-chain hygiene gap in an already inactive project.
The repository is not archived, which preserves a path for maintenance, but its last push was over six years ago and does not offset the stale release history.
No security policy was found, so users have no documented reporting or response process; the small, inactive project offers no compensating security practice.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.