The MIT license, included tests, and small dependency footprint make the package straightforward to evaluate and integrate. Ongoing security oversight is limited, with no security policy or scanning evidence.
42%
Total Score
0
100
75
50
The latest release was over six years ago, with no releases in the past 12 months. That long gap is strong evidence of abandonment risk despite a history of 12 releases.
The repository recorded zero commits and zero active maintainers in the past three months, consistent with the release gap and indicating no visible ongoing maintenance.
The repository has zero stars and forks and only two watchers. Popularity is supporting evidence rather than a verdict, but these counts provide little evidence of a broad active user or contributor base.
Composer build tooling is present, but no security-scanning tools were detected. The missing scanning evidence modestly lowers confidence in ongoing project hygiene.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented. This is a meaningful transparency gap, though it is less severe than the maintenance inactivity.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.