The package is licensed, clearly documented, and has no install-time scripts or deprecation notice. Its recent release provides continuity, while the small project footprint limits confidence in long-term support.
62%
Total Score
50
100
94
83
The repository is owned by an individual user rather than an organization, so there is no organizational backing shown to compensate for concentrated maintenance.
All two recent commits came from one contributor, giving the project a top-contributor share of 100%. This concentrates maintenance knowledge and raises continuity risk.
The repository received two commits in the last three months, showing some current activity. The volume is limited, so it provides only modest evidence of sustained maintenance.
Composer is used for builds, but no security-scanning tool was detected. The missing scanner is a transparency and hygiene gap, though it is not by itself evidence of unsafe code.
The repository has no security policy. For a debugging package that exposes remote PHP evaluation, the absence of documented vulnerability-reporting guidance is a meaningful transparency gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.