It includes a clear MIT license, substantial tests, release notes, and recent commits. Low adoption and no security policy add modest uncertainty.
70%
Total Score
67
100
88
75
The package and repository are owned by the same individual user account, so there is no organizational backing shown to offset the concentrated maintainer base.
All 19 recent commits came from one contributor, creating a meaningful single-maintainer continuity risk with no demonstrated handoff capacity.
The repository has only 3 stars, 6 forks, and 1 watcher; this is limited supporting evidence of community review and does not outweigh the active commits.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest gap in ongoing security hygiene.
The repository has no security policy, so the process for reporting and handling vulnerabilities is not documented.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
symfony/console Version ^6.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.