The MIT licensing and matching source repository make its provenance clear. It has no recorded activity beyond its initial release, and the project lacks security scanning and a security policy. Treat it as a young, lightly maintained dependency.
62%
Total Score
50
81
75
The package is 103 days old and has only one release, so there is little release history from which to judge sustained maintenance.
The repository recorded zero commits and zero active maintainers in the last three months, indicating no observed ongoing development after the initial release.
The repository has zero stars, forks, and watchers. This is only supporting evidence, but it provides no external adoption signal to offset the thin maintenance history.
Composer build tooling is present, but no security-scanning tools were detected, leaving a modest quality and maintenance gap.
The repository has no security policy, reducing transparency about how consumers should report vulnerabilities.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.