Documentation, licensing, repository tests, and a small runtime dependency set make the package easy to inspect and adopt. Security scanning is absent, and the single-user project has not yet demonstrated sustained maintenance.
62%
Total Score
50
100
79
88
One registry maintainer is consistent with a small user-owned project, but it provides limited observable publishing redundancy.
The repository is owned by a user account rather than an organization, so the single-maintainer model is not offset by visible organizational backing.
The package is 0 days old with only 2 releases, published about 8 hours apart, so its maintenance record and long-term reliability are unproven.
There were 0 commits and 0 active maintainers in the past 3 months; because the repository is newly created, this is mainly an unproven-maintenance concern rather than evidence of a long-term collapse.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest repository-hygiene gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.