Clear documentation, tests, and licensing make adoption easier, while the project has little operating history. Security oversight is also limited, so pin this exact version and reassess as maintenance history develops.
60%
Total Score
50
100
81
83
The repository is owned by an individual user rather than an organization, so the single-maintainer concentration is not visibly compensated by organizational backing.
The package is only 49 days old and has a single release, so there is not yet enough release history to demonstrate sustained maintenance or compatibility stability.
One contributor made 100% of the recent commits, leaving maintenance dependent on a single individual with no demonstrated handoff capacity.
Only one commit was recorded in the last 3 months, all from one active maintainer; this is consistent with a newly published project but does not establish ongoing maintenance.
Composer build tooling is present, but no security scanning tools were detected, leaving security-review automation unestablished.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.