Tests, a clear README, and an organization-owned repository improve maintainability. Missing security documentation and a single-contributor history leave limited evidence of ongoing support.
66%
Total Score
67
100
88
88
The package is only 52 days old and all three releases arrived within roughly a day, so there is limited evidence of sustained maintenance beyond its initial launch.
One contributor made all three recent commits, leaving no demonstrated individual backup for maintenance; organization ownership offers some capacity to hand work off but does not show that a second contributor is active.
Only three commits were recorded in the last three months, all during the early life of the package, providing limited evidence of continuing development.
Composer is used as the build tool, but no security scanning tool is configured, leaving a modest security-process gap.
The repository has no security policy, so users are given no documented process for reporting vulnerabilities or receiving security fixes.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^3.0 | — | — |
guzzlehttp/guzzle Version ^7.9 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.