The Apache-2.0 license and small dependency surface reduce adoption friction. Documentation is minimal, while maintenance stopped about 5 years ago and the repository has no security scanning, making abandonment a substantial concern.
38%
Total Score
0
100
72
75
This package has only one release, published about 5 years and 5 months ago, with no releases in the last 12 months. That strongly indicates an unmaintained project.
The repository recorded no commits and no active maintainers in the last 3 months, consistent with the last push being about 5 years ago. This is strong evidence of abandonment risk.
A README is present but contains only 19 characters, providing almost no integration guidance. Missing tests and a changelog are normal for published artifacts and are not concerns by themselves.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but these counters provide no external indication of adoption or review.
Composer is used for the build, but no security scanning tool is configured. That weakens maintenance and vulnerability-detection practices.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.