The package has a clear README, repository tests, and a matching source project. Its 0.x status and sparse recent commit record leave maintenance continuity less certain; unpinned CI actions add hygiene risk.
62%
Total Score
75
100
79
75
The package has existed for over five years with 10 releases, but only one release in the last 12 months and a median interval of about 193 days indicate a slow cadence.
There were no commits and no active maintainers recorded in the last three months, which weakens evidence of ongoing maintenance despite recent merged pull requests.
The repository uses Make and Composer, but no security-scanning tooling was detected, leaving a modest transparency and maintenance gap.
The repository has no security policy, making vulnerability reporting expectations less clear for consumers.
Version 0.3.0 is not a stable major release, so consumers may face breaking changes before 1.0 even though it is not a prerelease.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^3 | — | — |
php-standard-library/json Version ^6.1 | — | — |
php-standard-library/regex Version ^6.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.