The README is substantial, tests are present, and the package has a minimal runtime dependency. The single-owner project and absent security policy leave modest continuity and transparency caveats.
78%
Total Score
67
100
88
83
The repository is owned by an individual rather than an organization, so the concentrated contributor activity is not supported by visible organizational backing.
Two contributors were active recently, but one accounts for 80% of commits. That concentration creates a modest continuity risk for this user-owned project.
The project uses Composer for builds, but no security-scanning tools were detected. This is a modest security-process gap, not evidence of unsafe code.
The repository has no published security policy, which reduces transparency about vulnerability reporting and response expectations.
Version 0.12.0 is not a stable-major release, so compatibility may still change before 1.0. It is not a prerelease and recent releases show consistent publication activity.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.