Usable with caveats: it has a valid MIT license, a matching non-archived repository, and nine recent commits, but this is a very new 0.0.1 release with only one maintainer and no README or security policy.
62%
Total Score
67
71
75
The artifact has no README, while the repository also has no tests or changelog; the missing README reduces guidance for consumers, although the GitHub release indicates the version was formally published.
The repository is owned by an individual user rather than an organization, so the single-maintainer concentration is not offset by visible organizational backing.
This package is only 17 days old and has one release, so there is not enough history to demonstrate long-term maintenance or release reliability.
All nine recent commits came from one contributor, creating a meaningful continuity risk if that maintainer becomes unavailable.
Composer is used for builds, but no security scanning tools are configured; this is a transparency and maintenance gap rather than evidence of unsafe behavior.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
potter/command Version ^0.0.1 | — | — |
symfony/console Version ^8.1.5 | — | — |
potter/container Version ^0.0.1 | — | — |
vlucas/phpdotenv Version ^5.7.0 | — | — |
potter/application Version ^0.0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.