The codebase is small, licensed, and clearly tied to its package, with no install-time scripts or workflow findings. Its missing security policy and scanning provide limited evidence for handling future issues.
58%
Total Score
50
100
83
75
The package has 28 releases since March 2021, but no releases in the last 12 months; the latest release was about one year ago. This indicates materially slowed maintenance despite its established history.
The repository recorded no commits and no active maintainers in the last three months, consistent with the roughly one-year gap since the latest release. That weakens confidence in ongoing maintenance.
Composer is used for builds, but no security-scanning tooling is present. This is a modest supply-chain hygiene gap, partly offset by the package's simple dependency profile.
The repository has no security policy, leaving no documented channel or process for reporting vulnerabilities. This is a transparency gap for a package that performs HTTP requests.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.