The MIT license, small dependency footprint, and clear documentation make adoption straightforward. The repository is intact and tested, but maintenance visibility is limited and workflow pinning is weak.
64%
Total Score
50
100
89
75
The registry namespace and repository owner match, but the owner is an individual rather than an organization. This indicates a small maintainer setup without organizational backing.
The package has existed for about eight years and has seven releases, but it has had no release in the past 12 months. This lowers confidence in ongoing maintenance.
The repository recorded zero commits and zero active maintainers in the past three months. Combined with the lack of recent releases, this raises maintenance and abandonment concerns.
There has been no new or closed issue or pull request activity in the past month, with one open issue and one open pull request. This is a modest sign of limited current engagement.
Composer is used for the build, but no security scanning tools were detected. The missing scanning is a hygiene gap rather than evidence of unsafe code.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.