The package has clear installation guidance, MIT licensing, and a repository that matches its name and organization. Its narrow integration scope offers little evidence of testing or security practice, so adopting this release carries meaningful maintenance risk.
43%
Total Score
50
100
81
83
The repository recorded zero commits and zero active maintainers in the last three months, consistent with activity having stopped after the initial 2022 publication.
This is the package's only release, published nearly four years ago, with no releases in the last 12 months. That provides little evidence the integration is kept current.
Composer is used for the build, but no security scanning tool is present. This is a modest transparency and hygiene gap rather than evidence that the release is unsafe.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities.
Version 0.1.0 remains an early, non-stable-major release. Its single-release history gives no later evidence of maturation.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
spiral/boot Version ^3.0 | — | — |
spiral/core Version ^3.0 | — | — |
spiral/config Version ^3.0 | — | — |
schranz-templating/plates-adapter Version ^0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.