The stable version, matching repository, and release notes make the package easy to identify and assess. Organization backing and a clean dependency-free publication help, but no follow-up releases or repository activity leave this codebase carrying substantial abandonment risk.
43%
Total Score
50
75
75
The package has only one release, published about 3 years ago, with no releases in the last 12 months. This is strong evidence of an inactive project and is not offset by its stable version.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the package's long release gap. The repository is not archived, but current maintenance is still unobserved.
There were no new or closed issues or pull requests in the last month. With no release or commit activity, this provides no evidence of ongoing maintenance.
The repository has 0 stars, 0 forks, and 1 watcher, indicating very limited external adoption. Popularity is supporting evidence rather than a verdict, but it offers little confidence in community support.
Composer is used as a build tool, showing basic project tooling, but no security scanning tools are configured. This is a minor transparency gap rather than a standalone adoption blocker.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.