The README, tests, license, and simple dependency profile make adoption straightforward. Security documentation and automated scanning are absent, so long-term maintenance deserves attention.
60%
Total Score
67
100
86
83
The package and repository are owned by the same individual account rather than an organization, so maintenance capacity depends on a single project owner.
The package is about 7 months old with only two releases, both published close together, and no newer release since the initial launch. This limited history makes long-term maintenance harder to establish.
There were no commits and no active maintainers in the last 3 months. Combined with the short release history, this is a meaningful maintenance and abandonment concern.
Composer is used for builds, but no security scanning tool is configured. This is a modest transparency and maintenance gap, not evidence of unsafe code.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.