Cryptographically secure random data generation for tokens, passwords, and nonces
42%
Total Score
unhealthy
Risky: the artifact closely resembles a much more established package, creating a serious identity and dependency-selection risk.
The artifact overlap is 0.9 with the far more established php-standard-library/php-standard-library, which has 376,811 monthly downloads versus 3,035; this strongly suggests consumers may have intended the lookalike package.
The repository recorded zero commits and zero active maintainers in the last three months, which weakens evidence of sustained maintenance despite the recent release push.
Composer is used for builds, but no security scanning tools are configured, leaving a modest repository hygiene gap.
The repository has no security policy, reducing transparency about vulnerability reporting and maintainer response expectations.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
php-standard-library/foundation Version ^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.