The package has a clear MIT license, organization backing, and no install-time scripts. Its documentation and maintenance history are still too thin to establish maturity, and the repository has no security policy.
58%
Total Score
75
75
75
The artifact has no README, while the source repository also reports no tests or changelog; missing tests and changelog are normal packaging practice, but the missing README reduces consumer transparency for a library.
This release is the package's only release and it was published less than one day ago, so there is not yet enough history to demonstrate maturity or sustained maintenance.
The repository records zero commits and zero active maintainers over the last three months, but the package and repository were created less than one day ago, so this is limited evidence rather than proof of abandonment.
Composer is present as the build tool, which fits this PHP package, but no security scanning tools were detected, leaving a modest assurance gap.
No repository security policy was found, reducing guidance for reporting vulnerabilities and handling security issues.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^3.0 | — | — |
voyager/bus Version ^0.8.0 | — | — |
voyager/queue Version ^0.8.0 | — | — |
voyager/vessel Version ^0.8.0 | — | — |
voyager/contracts Version ^0.8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.