The package includes tests, a changelog, a matching source repository, and a clear MIT license. Its release and commit activity stopped about 8 years and 10 months ago, with no security policy and no meaningful repository adoption, so maintenance risk is substantial.
38%
Total Score
0
100
78
75
The latest release was published about 8 years and 10 months ago, with no releases in the last 12 months. The historical cadence was active early on, but there is no evidence of continuing maintenance.
There were no commits and no active maintainers in the last three months, consistent with the last push being about 8 years and 10 months ago. This is strong evidence of abandonment risk.
The repository has zero stars and forks and only one watcher. Popularity is not decisive by itself, but these counters provide little supporting evidence for ongoing maintenance.
Composer build tooling is present, but no security scanning tools were detected. The missing scanning is a hygiene gap that adds some transparency risk alongside the long inactivity.
The repository has no security policy. For an authentication and authorization module, this weakens vulnerability-reporting transparency and matters more than it would for a trivial utility.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
ramsey/uuid Version ^3.4 | — | — |
composer/installers Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.