Healthy and suitable to use, with a well-established release history and clear source package. Maintenance is currently concentrated in one contributor, and some workflows lack explicit permissions or allow write access, so review updates and CI practices before adopting it broadly.
82%
Total Score
67
100
100
83
One contributor made 100% of the recent commits, so maintenance could be disrupted if that person becomes unavailable. Organization backing provides some handoff capacity, but no second active contributor is shown.
Only 2 commits were made in the last 3 months by one active maintainer, showing current activity but a thin maintenance capacity.
Two workflows lack top-level permission declarations and one declares top-level write access, leaving CI privileges less explicitly constrained than preferred.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
php-di/php-di Version ^7.0 | — | — |
monolog/monolog Version ^3.0 | — | — |
owc/idp-userdata Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.