The package has a usable README, stable versioning, recent releases, and no install-time scripts. Security oversight is limited by the absence of repository scanning and a security policy, while ongoing work appears dependent on a very small team.
58%
Total Score
50
92
75
All recent commits came from one contributor with a 100% share, leaving maintenance dependent on a single individual.
Only one commit was recorded in the last three months, by one active maintainer, indicating very limited recent development activity.
Composer build tooling is present, but no security-scanning tooling was detected, reducing evidence of ongoing automated oversight.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
filp/whoops Version ^2.18 | — | — |
nyholm/psr7 Version ^1.8 | — | — |
dompdf/dompdf Version ^3.1 | — | — |
eftec/bladeone Version ^4.9 | — | — |
illuminate/http Version ^10.49 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.