The focused artifact includes clear usage documentation, a changelog, an MIT license, and no install-time scripts. Organization backing and a matching repository help, but the project shows little recent maintenance capacity.
58%
Total Score
75
100
83
83
The package has 14 releases, but its latest release was about seven years ago and there have been no releases in the last 12 months. That makes current maintenance uncertain despite its established history.
There were no commits and no active maintainers in the last three months. Combined with the old last push, this is evidence of dormant maintenance.
Composer build tooling is present, but no security scanning tools are configured. That is a modest transparency gap, while the package's narrow scope limits its significance.
The linked repository is not archived, which preserves the possibility of maintenance. However, its last push was nearly six years ago, consistent with the stale release history.
The repository has no security policy. This reduces disclosure transparency, though it is less consequential for a small, stable status-code utility than for security-sensitive software.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.