It includes a clear MIT license, tests, documentation, and a small dependency surface. These strengths are outweighed by the package being withdrawn and its source project being archived with no recent commit activity.
8%
Total Score
50
100
40
67
Packagist marks the entire package as abandoned, with no replacement provided. This is a direct warning against taking a new dependency on it.
The latest release was published in February 2020, and there have been no releases in roughly six years. The 14-release history shows an established package, but not current maintenance.
The linked repository is archived, which is a severe abandonment risk even though it was pushed recently. Archived projects are not a dependable maintenance base for a new dependency.
The repository recorded zero commits and zero active maintainers over the last three months, reinforcing the abandonment concerns from the old release history and archived status.
The repository has no security policy. This is a transparency gap, though it is secondary to the package's deprecation and archived status.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.