The MIT license, README, tests, changelog, and organization-backed repository provide useful foundations. No security scanning or policy is present, and maintenance capacity remains unproven for this newly published package.
64%
Total Score
75
79
83
The package is 0 days old, with only two releases published within about 6 minutes. This is too little history to establish dependable maintenance, though it does not by itself show abandonment.
There were no commits or active maintainers in the last 3 months. Because the repository itself is newly created, this is mainly an unproven-maintenance concern rather than evidence of a collapsed project.
Composer is used for builds, but no security-scanning tools are configured. The missing scanning coverage is a modest repository-hygiene gap.
The repository has no security policy. For an SDK handling API credentials and webhooks, this reduces transparency about vulnerability reporting and response.
Version v0.3.1 is not a stable-major release, so the public API may still change. It is not marked as a prerelease, which partly offsets the concern.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.