The package includes tests, release notes, a matching repository, and organization backing. Its maintenance record is thin: it has had one release and no commits or issue movement in the last three months, so future fixes are uncertain.
63%
Total Score
75
100
88
75
This is a young package with one release, all published on the same day. That provides little evidence of an established release or maintenance pattern.
The repository recorded zero commits and zero active maintainers in the last three months. Because the package is only 126 days old, this is a meaningful warning about follow-up maintenance rather than proof of abandonment.
There is one open issue and one open pull request, but neither issues nor pull requests were created or merged in the last month, providing no recent evidence of response or review.
Composer is used for the build, which is appropriate for this package. No security scanning tooling is configured, leaving a modest transparency and maintenance gap.
The repository has no published security policy, so consumers have no documented route for reporting vulnerabilities or learning how fixes are handled.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.