The repository has tests, a matching MIT license, and organization backing. However, no commits or releases have appeared for nearly eight years, while this remains an alpha release with only two historical releases.
40%
Total Score
50
71
75
Only two releases were recorded, both in June and July 2017, with none in the last 12 months; the roughly nine-year-old package shows severe release stagnation.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with a long period of inactivity and elevated abandonment risk.
There were no new or closed issues or pull requests in the last month, while one issue and one pull request remain open; this provides no evidence of current project response.
Composer is used as a build tool, but no security scanning tools are configured. This is a modest transparency and maintenance gap rather than a standalone severe risk.
The linked repository has no security policy, leaving vulnerability-reporting expectations and response procedures undocumented.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.