The package has a clear README and MIT declaration, while its small project footprint limits independent validation. A single maintainer and no security tooling add modest maintenance risk.
76%
Total Score
50
89
83
Only one registry account has publish access, leaving little publishing redundancy even though the repository owner is clearly identified.
The package is backed by a named individual repository owner rather than an organization, so the single-maintainer finding is not offset by visible organizational backing.
The repository has 0 stars and 0 forks, with only 1 watcher; this does not prove poor quality, but provides little external adoption evidence.
Composer is used as the build tool, but no security-scanning tools were detected, leaving release and dependency hygiene less independently checked.
The repository has no security policy, which makes vulnerability reporting and disclosure expectations less transparent for consumers.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.