The package includes tests, a matching Apache-2.0 license, Composer build metadata, and no install-time scripts. It has no security policy or scanning tooling, so maintenance and security transparency remain limited.
68%
Total Score
50
100
80
75
This is the first and only release, published less than a day ago, so there is no release track record yet. Its very recent age limits how strongly this can indicate abandonment, but maturity remains unproven.
The repository has recorded 0 commits and 0 active maintainers in the last 3 months. Because the package was published less than a day ago, this is partly explained by its newness, but it provides no demonstrated maintenance capacity.
Composer is used as a build tool, which supports reproducible project structure. No security scanning tools are configured, leaving a modest security-process gap.
The repository has no security policy. That leaves reporting and response expectations unclear, although this is a transparency gap rather than evidence of an unsafe release.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.