The MIT license, small runtime dependency set, and organization-backed repository support straightforward adoption. Recent maintenance is quiet, and the repository has no security policy, so future fixes and oversight are less certain.
66%
Total Score
75
100
86
83
The package has four releases since June 2025, but only one release in the last 12 months; that is a modest maintenance cadence for a dependency.
There were no commits and no active maintainers in the last three months. Together with the limited release cadence, this raises concern about responsiveness to future fixes.
The repository uses Composer build tooling, but no security-scanning tooling was detected. For a small library this is not severe, though it leaves less evidence of ongoing security oversight.
The repository has no security policy. That makes vulnerability reporting and disclosure expectations less clear, adding a transparency gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.