The small codebase has no tests, changelog, README, or security policy, which limits transparency for adopters. Its organizational ownership and non-archived repository help, but the release history leaves maintenance uncertain.
38%
Total Score
100
42
50
No license is declared, detected, or present in the package or repository. Without licensing terms, downstream use and redistribution are legally unclear.
This package has only one release, published over seven years ago, with no releases in the last 12 months. That is strong evidence of abandonment risk despite the repository remaining available.
The artifact has no README, tests, or changelog, and the repository reports none either. Missing tests and changelog are common for published artifacts, but the absent README reduces consumer transparency for this library.
The repository name does not match the package name, while no README mention was collected. This creates some uncertainty about package ownership, though name differences can occur for subpackages.
The repository has zero stars, forks, and watchers, offering no supporting evidence of broad community adoption or external maintenance.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.3 | — | — |
unicesil/syllabus-importer-toolkit Version >=1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.