Clear documentation, tests, licensing, and organization backing improve the adoption picture. The release is too new to establish maintenance history, and its workflow dependencies are not pinned.
68%
Total Score
75
100
78
75
This is the first recorded release, published today, so there is no historical release cadence or evidence of sustained maintenance yet. The repository was also pushed at release time, which is consistent with a new project but does not establish longevity.
There were no commits or active maintainers in the prior three months, but the package is only one day old. This is insufficient evidence of abandonment, while still leaving maintenance capacity unproven.
The repository currently has no stars, forks, or watchers. For a package released today this is expected and is only weak supporting evidence, not a maintenance verdict.
Composer build tooling is present, but no security-scanning tool was detected. The missing scanner is a modest transparency gap rather than evidence of unsafe code.
The repository has no security policy, leaving vulnerability-reporting expectations unspecified for an SDK intended for server use.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.