Usable with caveats: it has a clear MIT license, thorough documentation, tests, and recent activity. However, it is only 43 days old, has two releases, and all recent commits come from one contributor with no security policy.
68%
Total Score
67
100
88
88
The package and repository are owned by the same individual account, so the single-contributor risk is not offset by organization-level maintenance backing.
The package is very new at 43 days old and has only two releases, so its maintenance and compatibility record are still limited.
All seven recent commits came from one contributor, leaving maintenance dependent on a single individual and creating a meaningful continuity risk.
Composer is used for build tooling, but no security-scanning tools were detected, leaving security hygiene less independently verifiable.
The repository has no security policy, so users have no documented vulnerability-reporting process or maintenance commitment for security issues.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.