The stable major version and very small three-file package keep the integration surface simple. The repository remains available and has no install-time scripts, but the long maintenance gap limits confidence in future fixes.
52%
Total Score
0
75
88
The latest release was in January 2022, with no releases in the following four years and only three releases overall. This is meaningful abandonment risk for a maintained library, despite its long history.
There were no commits and no active maintainers in the last three months, consistent with the release history showing no release since January 2022. This materially lowers confidence in maintenance and future fixes.
The artifact has no README, tests, or changelog, while the repository also reports no tests or changelog. Missing tests and changelog are normal for published artifacts, but the missing README is a minor consumer-transparency gap for a library.
Composer is used as the build tool, but no security-scanning tooling is reported. For this small package that is a hygiene gap rather than evidence of unsafe behavior.
The repository has no security policy. This weakens the project's vulnerability-reporting transparency, though it is less significant than the prolonged lack of maintenance.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.