Clear tests, usage documentation, and an MIT license support adoption. The single maintainer and lack of security scanning leave little evidence of ongoing oversight.
42%
Total Score
25
100
75
The latest release was about 10 years ago, with no releases in the past 12 months. This is strong evidence of abandonment risk for a dependency, although the release history shows 12 prior releases.
The repository recorded 0 commits and 0 active maintainers in the past 3 months, consistent with the last push in August 2016. There is no provided evidence of current maintenance capacity.
One registry maintainer is consistent with a small user-owned project, but it provides limited continuity if that maintainer is inactive. The repository's owner is also a user rather than an organization.
Composer build tooling is present, but no security-scanning tool was detected. For a small library this is a modest transparency and oversight gap rather than a standalone adoption blocker.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.