The 47-character README offers little integration guidance, while no security policy is provided. The MIT license and explicit runtime dependencies improve transparency, but do not offset the long inactivity.
35%
Total Score
0
100
58
83
Only two releases were published, and none appeared in the last 12 months; the latest release was about 4 years and 9 months ago. This is strong evidence of abandonment risk for a dependency.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the release history showing prolonged inactivity.
The package includes a very short 47-character README, providing little guidance for consumers. Missing tests and a changelog in the published artifact are normal packaging practice and are not treated as gaps.
The repository name does not match the package name and its README does not mention the package, so the linked repository may not clearly belong to this release.
The linked repository is not archived, although its last push was about 4 years and 10 months ago; the non-archived status does not offset the stale activity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
predis/predis Version ^1.1 | — | — |
textalk/websocket Version ^1.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.