The Apache-2.0 license, focused dependencies, tests, and organization-backed repository support adoption. Its very limited history means there is not yet enough evidence of sustained maintenance.
63%
Total Score
75
100
75
83
This is the package's first release, published 0 days ago, so there is no release cadence or track record to establish maintenance reliability.
There were 0 commits and 0 active maintainers in the last 3 months, but the repository is newly created, so this currently shows limited evidence rather than established abandonment.
The repository has 0 stars, forks, and watchers. This provides no supporting adoption evidence, although the package's age makes that unsurprising.
Composer is used for the build, but no security scanning tool is reported. That is a hygiene gap, not a standalone dependency-blocking risk.
The repository has no security policy. This weakens vulnerability-reporting transparency, though it is a process gap rather than evidence of unsafe code.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.