The package is documented, licensed, and has no install-time scripts, but maintenance appears dormant since June 2019. A single registry maintainer and no security policy add modest continuity concerns.
58%
Total Score
67
88
83
Only one registry account has publish access, leaving limited visible publishing continuity; this is a modest concern rather than a severe risk for a small user-owned project.
The latest release was published in June 2019, with no releases in the last 12 months; this indicates a long period without visible release maintenance.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the package's prolonged lack of releases and increasing abandonment risk.
The repository uses Composer build tooling, but no security scanning tools were detected; the missing scanning is a hygiene gap, not evidence that the package is unsafe by itself.
No repository security policy was found, reducing transparency for reporting and handling vulnerabilities in a package with no recent maintenance activity.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.