The BSD-3-Clause license, matching repository, and single runtime dependency make the package easy to inspect and adopt. Its small contributor footprint and absent security policy provide little reassurance if maintenance is needed.
47%
Total Score
50
100
70
50
The package has 11 releases, but none in more than eight years; its latest release was published in May 2018. That long period without registry updates is strong evidence of abandonment.
The repository recorded no commits and no active maintainers in the last three months, consistent with the release history showing no update for more than eight years.
Composer build tooling is present, but no security scanning tooling was detected. For this small package the missing scanner is secondary, yet it offers no extra assurance for an old release.
The repository has no security policy, leaving reporting and response expectations undocumented. This is a modest transparency concern alongside the broader maintenance gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.