The package includes tests, a substantial README, a matching MIT license, and no install-time scripts. Its organization-backed repository is not archived, but security scanning and a security policy are absent.
68%
Total Score
75
100
79
75
This package is less than a day old with only two releases, so there is not yet enough history to establish dependable maintenance or release practices.
There were no commits or active maintainers in the preceding three months. Because the repository is brand new, this is limited evidence rather than proof of abandonment, but maintenance capacity is not yet established.
Composer build tooling is present, but no security scanning tools were detected. This is a modest transparency and maintenance gap for a package intended for application integration.
The repository has no security policy, leaving vulnerability reporting and disclosure expectations unspecified.
Version v0.1.1 is a pre-1.0 release, which signals an early and potentially changing API despite not being marked as a prerelease.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.