The package is lightly documented and lacks security scanning, which limits transparency for a dependency. Its organization-backed repository and simple dependency profile help, but the project remains young with no commits in three months.
58%
Total Score
50
100
78
75
The repository recorded zero commits and zero active maintainers in the last three months, a concrete sign that maintenance has paused after the initial release burst.
A README is present, but it is brief at 209 characters and neither the package nor repository provides tests or a changelog. Missing tests and changelog are normal packaging practice; the brief consumer documentation is a minor limitation.
Only two releases have appeared, both within a four-day period, so the project has limited demonstrated release history despite its 170-day age.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but these counters provide no external adoption signal for this young project.
Composer is used as the build tool, but no security scanning tools are configured, leaving a modest transparency and maintenance gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.