The source is clearly licensed, organized into tested Ansible roles, and backed by an organization with a matching repository. Its small public footprint, absent security policy, and unpinned workflow actions provide less evidence of ongoing care.
58%
Total Score
50
78
67
There were no commits and no active maintainers in the last three months. With the last recorded push about 2 years and 6 months ago, abandonment risk is meaningful.
The package has four releases, but none in the last 12 months; its latest release was about 2 years and 8 months ago. This makes ongoing maintenance uncertain despite the initially rapid release sequence.
The repository has zero stars and forks and only one watcher. Popularity is not required for a healthy package, but this provides little supporting evidence of broad review or adoption.
The repository uses Composer build tooling, but no security scanning tools were detected. The missing scanning is a modest transparency and maintenance gap.
The linked repository is not archived, although its last push was about 2 years and 6 months ago, which is consistent with the separate maintenance warning.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.