The Apache-2.0 license, matching repository, and organization ownership provide clear packaging context. Its narrow metapackage design keeps adoption simple, but long-term maintenance is not yet demonstrated.
70%
Total Score
75
100
88
88
This package has only one release and is less than one day old, so there is no release history showing sustained maintenance. Its newness explains the gap but does not remove the maturity uncertainty.
No commits or active maintainers were recorded in the last three months. Because the package was first released less than one day ago, this is consistent with a new project but leaves ongoing maintenance unproven.
Composer is used as the build tool, which fits the package ecosystem, but no security scanning tooling was detected. For this small metadata-focused package, that is a modest hygiene gap rather than a severe risk.
The linked repository has no security policy. This is a transparency gap, although the package is a narrow type-definition metapackage with no reported lifecycle scripts.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
tyhpdef/nette-php-generator-impl Version ~4.2.2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.