The MIT license, focused dependency set, tests, and matching repository support routine adoption. It is a small project with limited popularity and no documented security process.
69%
Total Score
75
100
79
50
The package has existed since July 2021 and has 9 releases, with 2 releases in the last 12 months. The roughly 6-month median interval indicates modest rather than rapid maintenance.
There were 0 commits and 0 active maintainers in the last 3 months. Although the release was published during that period, the absence of observed commit activity weakens evidence of ongoing maintenance.
The repository uses Make and Composer, showing basic build tooling, but no security scanning tools were detected. This is a moderate transparency and maintenance-process gap rather than a severe risk.
The repository has no security policy. That reduces clarity about how vulnerabilities are reported and handled, though it is not evidence that the package is unsafe.
Version v0.2.6 is not a prerelease, and recent releases contain no prerelease versions. The 0.x major version still indicates an API that may change before 1.0.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.