The package includes clear documentation, tests, a changelog, and no install-time scripts. Its alpha-only history, concentrated contributors, and absent security policy warrant pinning and continued maintenance checks.
74%
Total Score
83
86
75
Two contributors are active, but the leading contributor made about 70% of recent commits, leaving maintenance somewhat concentrated; organization backing partly reduces handoff risk.
Composer build tooling is present, but no security-scanning tooling was detected, leaving a modest transparency and maintenance gap.
The repository has no published security policy, so there is no documented process for reporting or handling vulnerabilities.
The assessed release is v0.1.0-alpha.301, and all recent releases are prereleases, so API or behavior changes remain more likely than for a mature stable package.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
waaseyaa/field Version ^0.1.0-alpha.301 | — | — |
waaseyaa/access Version ^0.1.0-alpha.301 | — | — |
waaseyaa/entity Version ^0.1.0-alpha.301 | — | — |
waaseyaa/foundation Version ^0.1.0-alpha.301 | — | — |
waaseyaa/relationship Version ^0.1.0-alpha.301 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.