The organization-owned repository matches the package and includes clear usage documentation. Apache-2.0 licensing and no install scripts reduce adoption friction, but ongoing reliability is not yet demonstrated.
65%
Total Score
75
100
86
75
The package is 0 days old with only one release, so there is no release track record to establish maintenance reliability.
The repository has recorded 0 commits and 0 active maintainers in the last 3 months; because the project is newly published, this is evidence of unproven maintenance rather than abandonment.
Composer build tooling is present, but no security-scanning tool was detected, leaving a modest repository-hygiene gap.
The repository has no security policy. This is a transparency gap, although the package is a small type-definition metapackage rather than a runtime-heavy library.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
tyhpdef/intervention-image-impl Version ~4.3.2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.