The package is clearly documented, licensed, and backed by a matching organization repository. Its releases were clustered within minutes and repository activity stopped about four months ago, while security coverage is limited.
62%
Total Score
75
100
83
75
All five releases arrived within about 14 minutes on the first release day, leaving little evidence of an established release cadence. The package is only about four months old, so this is a caution rather than proof of abandonment.
There were no commits and no active maintainers during the last three months; with the repository last pushed about four months ago, maintenance continuity is uncertain.
The repository has no stars, forks, or watchers. This offers no independent adoption evidence, but the package's young age means the absence is not decisive.
The repository uses Composer, but no security scanning tools were detected. That leaves a meaningful review gap for a library intended to process and generate email content.
The repository has no security policy, so users have no documented vulnerability-reporting process.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.