The package has recent releases, tests, a clear README, and an active source repository. Maintenance appears narrow, with no commits in the last three months, and the release lacks a detectable license; workflow dependencies are also unpinned.
68%
Total Score
67
100
83
67
No declared license, license file, or repository license file was detected. That leaves the legal terms for using this dependency unclear.
The repository is owned by an individual account rather than an organization. That is consistent with a small package but indicates a narrower apparent backing structure.
The repository recorded 0 commits and 0 active maintainers in the last three months. Recent releases partly compensate for this, but the lack of current source activity is a maintenance concern.
The repository has 0 stars and 0 forks, with 1 watcher. Popularity is only supporting evidence, so this modestly limits external validation without independently indicating abandonment.
The repository uses Composer, but no security-scanning tool was detected. The missing scanner is a hygiene gap rather than evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
unapi/helper-types Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.