The package includes tests, a clear README, a stable MIT license, and a restrained dependency set. GitHub Actions uses three unpinned actions, and the repository has no security policy or scanning.
68%
Total Score
75
100
93
67
The repository had zero commits and zero active maintainers in the last 3 months. A current release partly offsets this, but the lack of recent development is a maintenance concern.
The project uses Make and Composer, showing basic build structure, but no security scanning tools were detected. This is a modest transparency and maintenance gap.
The repository has no security policy. That does not show a vulnerability, but it leaves vulnerability reporting and response expectations undocumented.
The single workflow was fully analyzed with no audit findings or untrusted triggers, but all 3 action uses are unpinned. Pinning actions would improve build reproducibility and reduce workflow supply-chain exposure.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^1|^2|^3 | — | — |
guzzlehttp/guzzle Version ^6.0 || ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.