The repository has just one star and no security policy, limiting evidence of community support and response planning. MIT licensing, a matching repository, a usable README, and no install-time scripts provide useful safeguards.
58%
Total Score
50
50
81
83
The package declares 20 runtime dependencies, including several related project packages; this creates a relatively broad dependency surface and may increase update and compatibility burden.
The repository is owned by an individual account rather than an organization, so there is no visible organizational backing to offset the thin community and maintenance evidence.
The package has had no release in more than two years, despite 17 releases overall; this indicates maintenance may have stopped after the 1.1.7 line.
There are no open issues or pull requests and no recent issue or pull-request activity. This is consistent with a small project but gives little evidence of active maintenance.
The repository has one star, zero forks, and one watcher, providing little evidence of external adoption or community support.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^3.0 | — | — |
psr/http-factory Version ^1.0 | — | — |
psr/http-message Version ^2.0 | — | — |
psr/simple-cache Version ^3.0 | — | — |
rnr1721/le7-view Version ^1.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.