The MIT license, clear README, repository tests, and lack of install scripts are reassuring. Security scanning and a repository security policy are absent, so operational safeguards are limited.
68%
Total Score
67
100
86
75
The package is only 40 days old and has one release, so there is not yet enough history to establish long-term maintenance reliability.
One contributor made all 2 recent commits. Organization backing provides some handoff capacity, but no second active contributor is evidenced.
The repository had 2 commits in the last 3 months, showing recent activity but only limited maintenance evidence.
Composer is used as a build tool, but no security-scanning tools are configured, leaving automated dependency or code checks unverified.
The repository has no security policy, so its process for receiving and handling vulnerability reports is not documented.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.