The package has a substantial README, broad tests, a matching MIT license, and no install-time scripts. Its limited release history, absent recent commits, missing security policy, and unpinned workflow actions leave maintenance and build-integrity concerns.
58%
Total Score
50
100
81
75
This is the only release, published about 13 months ago, with no releases in the last 12 months. That limited history makes ongoing maintenance uncertain.
There were no commits and no active maintainers in the last three months. Combined with the single-release history, this is a meaningful maintenance concern.
The repository uses Make and Composer, but no security scanning tools are reported. This is a modest transparency and maintenance gap rather than evidence of abandonment on its own.
No security policy is present in the repository, leaving vulnerability-reporting expectations unclear.
The release is not marked prerelease, but v0.1 is an early major version with no established release track record to compensate for its age.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.