It has tests, a usable README, and no install-time scripts, supporting straightforward adoption. The missing license, inactive development, absent security scanning, and unpinned CI actions reduce transparency and build confidence.
51%
Total Score
25
100
71
83
There were no commits and no active maintainers in the last three months. Combined with the old latest release, this raises a substantial risk that fixes and updates will not arrive promptly.
No declared license, license file, or repository license file was detected. This creates a real adoption and transparency concern for downstream projects.
The package and repository are owned by the same individual account, providing clear ownership but no organizational backing or broader maintenance capacity.
The package has had three releases, but none in the last 12 months and the latest was about 18 months ago. This indicates meaningful maintenance risk despite an initially regular cadence.
The repository uses Make and Composer, but no security scanning tool was detected. The build setup is present, while the missing scanning is a moderate hygiene gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
adhocore/cli Version ^1.9 | — | — |
nette/php-generator Version ^4.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.