Clear documentation, tests, and licensing support adoption. The small project has no security policy, so weigh future updates carefully.
67%
Total Score
50
90
50
The package has existed since 2019 with 12 releases, but only one release in the last 12 months, indicating a slow release pace rather than abandonment.
There were no commits and no active maintainers in the last 3 months, although the repository was pushed more recently than that window.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented for a middleware package.
The single workflow was fully analyzed with no dangerous triggers, sinks, or audit findings. However, both action references are unpinned, which is a supply-chain hygiene gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
slim/slim Version ^4.0 | — | — |
psr/http-factory Version ^1.0 | — | — |
psr/http-message Version ^1.0 || ^2.0 | — | — |
psr/http-server-handler Version ^1.0 | — | — |
psr/http-server-middleware Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.