Workflow dependencies are unpinned and the repository has no security policy or scanning. Organization backing, repository tests, a clear MIT license, and regular prior releases provide useful safeguards.
68%
Total Score
67
100
89
75
The repository recorded zero commits and zero active maintainers in the last 3 months. Although the latest release was on March 11, 2026, the current lack of observed development lowers confidence in ongoing maintenance.
There are no open issues or pull requests and no issue or pull-request activity in the last month. This is not inherently unhealthy, but it provides no evidence of an active support community.
The repository has zero stars and forks and one watcher. Popularity is only supporting evidence, but these very low counts provide little external validation for a security-sensitive authorization package.
Composer build tooling is present, but no security scanning tools were detected. For an authorization library, the missing security automation is a meaningful hygiene gap.
The repository has no security policy. That makes the process for reporting and handling vulnerabilities less transparent, especially for an authorization-focused package.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.