Organization backing and an MIT license provide clear ownership and permission to use the code. The missing README and security policy leave integration guidance and vulnerability reporting less clear.
62%
Total Score
75
75
75
The package has no README, and the repository also has no README evidence, reducing integration guidance for this library. Missing tests and a changelog in the published artifact are normal packaging practice and do not lower the score here.
The package is 0 days old with only 1 release, so there is no observed release or maintenance track record yet.
The repository has 0 commits and 0 active maintainers in the last 3 months; because the package was released today, this is limited evidence of an established maintenance pattern rather than proof of abandonment.
No security policy was found, so consumers have no documented vulnerability-reporting process; this is a transparency gap rather than a severe risk.
Version v0.8.0 is not a stable major release, which suggests the public API may still change even though it is not marked prerelease.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/process Version ^7.2.0 | — | — |
venusian-voyager/contracts Version ^0.8.0 | — | — |
venusian-voyager/macroable Version ^0.8.0 | — | — |
venusian-voyager/collections Version ^0.8.0 | — | — |
venusian-voyager/nuts-and-bolts Version ^0.8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.