The generated client is clearly structured, MIT-licensed, and has no install-time scripts. It lacks a security policy and visible security scanning, while its single-person ownership offers little evidence of ongoing support.
40%
Total Score
25
70
75
The package has had only 3 releases, all concentrated in November 2019, with no releases in the last 12 months. This is strong evidence of abandonment for an API client that may need to track a changing service.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the release history showing no activity since November 2019. The inactive repository materially raises maintenance risk.
Only one registry maintainer is listed, and the project is user-owned rather than organization-backed. Combined with the absence of recent commits, this leaves little visible maintenance capacity.
The repository has 0 stars and 0 forks, with only 1 watcher. Popularity is not required for a healthy package, but these values provide no supporting evidence of community review or shared maintenance.
The repository has no security policy and no documented security contact. This weakens transparency for a client handling employee and payroll-related API data.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
jane-php/open-api-runtime Version ^5.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.