The MIT license, release notes, and organization ownership improve transparency. The package is small and lacks security scanning, leaving limited evidence of ongoing support or review capacity.
38%
Total Score
50
69
50
The package has only two releases, both from January 2018, and none in the last 12 months; this is strong evidence of abandonment risk.
There were no commits or active maintainers in the last three months, consistent with the repository's last push in January 2018 and indicating no current maintenance.
The package includes a README and GitHub release notes for this version, but the README is only 18 characters and the project has no tests or changelog; the release notes partly compensate for the missing changelog.
The repository name does not match the package name and its README does not mention the package, making package ownership and release provenance less transparent.
Composer build tooling is present, but no security scanning tools are configured, reducing evidence of routine security review.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.