Its tests, clear licensing, and simple dependency profile reduce adoption friction. The project is too new to establish durable maintenance, and it lacks a security policy.
65%
Total Score
75
100
79
83
The package includes tests, which supports basic validation. Its missing README is a minor consumer-documentation gap for a library package.
The package was released today and has only one release, so there is no demonstrated release track record or maintenance continuity yet.
There were no commits or active maintainers in the past three months. Because the repository was created today, this is mostly an absence of history rather than evidence of a collapsed project.
Composer is used for the build, but no security-scanning tool was detected; this is a modest transparency and maintenance gap for a new package.
The repository has no security policy. That does not make the package unsafe by itself, but it leaves vulnerability-reporting expectations undocumented.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
php-http/promise Version 1.3.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.