The package is young and all recent commits come from one contributor, which limits evidence of long-term maintenance depth. Clear documentation, tests, a changelog, matching source repository, and a permissive license make adoption straightforward.
78%
Total Score
63
100
88
88
The repository is owned by a user account rather than an organization, so the concentrated contributor activity is not compensated by visible organizational backing.
The package is only 90 days old with two releases and a median interval of about 14 days, so it shows initial activity but little long-term maintenance history.
One contributor made all two recent commits, concentrating maintenance responsibility and increasing continuity risk if that contributor becomes unavailable.
Two commits occurred in the last three months, showing recent activity but limited evidence of sustained maintenance capacity.
Composer is used for builds, but no security-scanning tool is configured, leaving a modest repository hygiene gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.