The README is only 32 characters, and the repository has no security policy or scanning tools. Its organization backing and single runtime dependency reduce complexity, but there is little evidence of mature project practice.
58%
Total Score
100
100
81
75
The package includes a README, but it is only 32 characters and provides almost no consumer guidance. Missing tests and a changelog are normal for published artifacts and are not concerns here.
All 13 releases arrived in roughly 4 hours, with the latest release 101 days ago and no later release evidence. This looks like an immature, bursty release history rather than an established maintenance cadence.
Composer is used for builds, but no security scanning tools are present. This is a modest process gap rather than evidence that the release is unsafe by itself.
The linked repository has no security policy. For a package intended to be integrated into applications, this weakens the project's transparency around vulnerability reporting.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
tualo/bsc Version ^1.6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.