It includes tests, a matching Apache-2.0 license, and no install-time scripts. The organization-backed repository is not archived, but security policy and scanning coverage are absent.
68%
Total Score
75
100
81
88
This is the package's first release, published today, so there is no release track record or demonstrated maintenance cadence yet.
No commits or active maintainers were recorded during the last three months. Because the repository is only one day old, this is mainly an unproven maintenance record rather than evidence of abandonment.
Composer is used as a build tool, but no security scanning tool was detected, leaving a modest transparency and defensive-process gap.
The repository has no security policy, so it provides no documented path for reporting vulnerabilities or describing security handling.
Version 0.1 is an early release rather than a stable major version, which increases maturity uncertainty for dependents.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.