The package is small but transparent, with a clear README, matching source repository, MIT licensing, and no install-time scripts. Its maintenance record is the main concern: it has had no release or repository commit activity since October 2022, leaving current compatibility uncertain.
52%
Total Score
50
83
83
The package has only one release, published in October 2022, and no releases in the following 12 months of the collected history. This is strong evidence of limited ongoing maintenance, though a small stable library may not need frequent releases.
The repository recorded zero commits and zero active maintainers during the last three months, consistent with the release history showing no activity since October 2022. This raises abandonment and compatibility risk.
Composer is used as the build tool, but no security scanning tools are present. The missing scanning is a modest hygiene gap rather than evidence of abandonment or unsafe behavior.
The repository has no published security policy, which reduces transparency about vulnerability reporting. For this small package it is a secondary concern compared with the long inactivity period.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.