It has a clear Apache-2.0 license, tests, release notes, and an organization-backed repository. Only one registry release appeared in the last 12 months, so maintenance looks quiet despite the recent housekeeping release.
68%
Total Score
67
100
88
88
The package has existed for more than 11 years with 20 releases, but only one release was published in the last 12 months. This indicates a mature but currently quiet maintenance pattern.
The repository recorded zero commits and zero active maintainers during the last three months. This is the main abandonment concern, although the recent registry release and repository push provide limited compensation.
Only one issue is open, with no new or closed issues or pull requests in the last month. This is quiet rather than severe, but it offers little evidence of active community maintenance.
Composer is used for builds, but no security scanning tool was detected. The missing scanner is a hygiene gap rather than evidence that the release is unsafe.
The repository has no security policy, reducing transparency about vulnerability reporting and response expectations. This is a moderate process gap, not a sign of abandonment by itself.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.