The repository was updated recently and the package has a clear MIT license with minimal runtime dependencies. Maintenance depends entirely on one contributor, while the small codebase has no README, tests, changelog, or security policy.
68%
Total Score
50
100
86
50
The package has no README, tests, or changelog, and the repository has none either. The missing README reduces integration transparency for this library, while absent tests and changelog are meaningful but not severe on their own.
The repository is owned by a user account rather than an organization, so the one-person contributor concentration is not visibly compensated by organizational backing.
All three recent commits came from one contributor, so maintenance and release knowledge are concentrated in a single person with no demonstrated backup.
Three commits from one active maintainer in the last three months show recent work, but the activity level is light for a library.
Composer is used for builds, but no security scanning tool is present. That is a hygiene gap rather than evidence of abandonment, especially given the package's small dependency surface.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.