Clear licensing, a small dependency surface, and a matching repository improve adoption confidence. The organization-backed project has one active contributor and no security scanning, so resilience and review depth are limited.
86%
Total Score
90
100
94
83
All 35 recent commits came from one contributor, which limits visible individual redundancy; organizational backing partly reduces the handoff risk.
Composer build tooling is present, but no security scanning tools were detected, leaving review coverage weaker than it could be.
The repository has no security policy, reducing transparency about vulnerability reporting and response procedures.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
tencentcloud/common Version >=3.0.1671 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.