Its small scope, focused dependency set, README, and tests make adoption straightforward. MIT licensing and a non-archived, package-matching repository provide useful transparency.
52%
Total Score
33
100
75
83
The package has only one release, published about 12 years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk for a dependency.
There were zero commits and zero active maintainers in the last 3 months. Combined with the old release, this materially increases the risk that defects will remain unaddressed.
The package and repository are owned by an individual account rather than an organization. That is consistent with a small project but provides less visible maintenance backing.
There was no issue or pull request activity in the last month, with open issues and a pull request still present. This suggests limited current project attention, though it is weaker evidence than the release and commit history.
Composer and PHPUnit-related project structure show basic build and test tooling. No security scanning is configured, which is a minor transparency gap but not decisive for this small package.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.