The MIT license, small dependency surface, and matching organization repository make the package straightforward to inspect and adopt. It lacks tests and a security policy, adding maintenance risk to adoption.
44%
Total Score
75
100
67
75
The latest release was published in December 2021, and there have been no releases in nearly five years. Five releases over the package's lifetime show some history, but not current maintenance.
There were no new or closed issues and no pull-request activity in the last month. With the repository already inactive for years, the lack of current collaboration provides little evidence of ongoing support.
The repository has zero stars and forks and only one watcher. Popularity is not required for a healthy package, but these figures provide no meaningful supporting evidence of community adoption or review.
The repository is not archived, which preserves a path for future maintenance, but it was last pushed in December 2021. That long period without source updates is a substantial abandonment concern.
The repository has no security policy. For an SDK that handles API integrations, this reduces transparency about vulnerability reporting and response.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.