The package includes tests, a usable README, and a matching source repository. Its very limited history leaves maintenance capacity and security practices unproven, so pinning this exact version is prudent.
64%
Total Score
50
80
75
Only two releases exist, both published on the same day, so there is not yet enough history to demonstrate sustained maintenance or release discipline.
The repository records zero commits and zero active maintainers over the last three months, although the package itself is only 0 days old, so this is a limited maturity concern rather than evidence of abandonment.
Composer build tooling is present, but no security-scanning tool was detected. That leaves security maintenance less transparent for a package that generates certificates and handles checksum-related code.
The repository has no security policy, reducing the clarity of its vulnerability-reporting process. This is a transparency gap, not evidence that the release is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
giggsey/libphonenumber-for-php Version ^9.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.