Usable with caveats: it is a small, clearly documented utility with a matching source repository, but there have been no commits or active maintainers in the last three months. The project is new and has only two releases, so long-term maintenance is not yet established.
58%
Total Score
67
100
83
90
Only one registry publishing account is listed. That is a thin maintainer base for continuity, although the matching user-owned repository provides direct ownership evidence.
The package is only 156 days old and has two releases, both published within the same day. This is too little history to demonstrate sustained maintenance, though it is consistent with a newly introduced utility.
The repository recorded zero commits and zero active maintainers in the last three months. For a package this new and small this may reflect completion, but it leaves ongoing maintenance unproven.
The repository has zero stars, forks, and watchers. This provides no community backing, but low popularity alone is not a decisive concern for a narrow developer utility.
Composer is used as the build tool, confirming basic project tooling, but no security scanning tools are configured. The missing scanning is a transparency gap rather than evidence of unsafe behavior.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ^12.4 || ^13.4 || ^14.0 | — | — |
web-vision/deepltranslate-core Version ^5.1 || ^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.