A single maintainer and no security scanning reduce confidence in ongoing care. The MIT license, focused 18-file tree, and short readme help transparency, but do not restore confidence.
45%
Total Score
50
83
100
Only one registry maintainer is listed, leaving little visible publishing redundancy. The linked repository is also owned by an individual account, so no organizational backing is shown to compensate.
The latest release was about four years ago, with no releases in the preceding 12 months. The three releases were initially spaced regularly, but the long current gap indicates abandonment risk.
The repository had no commits and no active maintainers in the last three months, consistent with the extended release gap. This materially lowers confidence in ongoing maintenance.
Composer build tooling is present, but the repository has no security scanning tools. This is a modest transparency and maintenance gap, though it does not by itself make the package unfit.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.