The package is small and clearly documented, with a focused dependency profile and organization-owned repository. It lacks tests, security policy, and automated security scanning, which increases maintenance and transparency concerns.
38%
Total Score
50
100
67
83
This is the package's only release, published over 9 years ago, with no releases in the last 12 months. That strongly indicates the release is no longer actively maintained.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the long release gap and reinforcing abandonment risk.
The package includes a README, but it has no tests or changelog. Missing tests materially weaken confidence in this library, while the absent changelog is expected packaging practice and the short README still provides basic context.
Composer is used for the build, but no security scanning tooling is configured. The lack of scanning is a modest hygiene gap alongside the broader maintenance concerns.
No security policy was found, leaving users without a documented channel or process for reporting security issues. This is a transparency gap, though not severe on its own.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.