The small dependency set, MIT license, README, tests, and matching repository make the package straightforward to inspect and integrate. Maintenance is stale, with no releases in over four years and no recent repository activity; security-policy coverage is also absent.
61%
Total Score
75
100
81
83
The package has only two releases and none in the past four years, indicating limited ongoing maintenance. Its stable 1.0.1 version provides some maturity but does not offset the long release gap.
There were no commits or active maintainers in the past three months, consistent with the release history and indicating an inactive project.
The repository has only 2 stars and no forks, providing little community evidence or backup support. Low popularity is supporting evidence rather than a standalone adoption blocker.
Composer is used for builds, but no security-scanning tool was detected. The missing scanner modestly reduces assurance without proving a maintenance or safety failure.
The repository has no security policy, leaving vulnerability-reporting and response expectations unspecified.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.