The README and coherent 25-file artifact make installation and scope clear. The repository is small and accurately linked, but its single-contributor activity and lack of security process leave limited evidence of ongoing support.
64%
Total Score
50
86
50
The registry lists one maintainer, consistent with the repository's single recent contributor. This is a modest continuity concern for a young package.
The package is 93 days old with three releases, all published on its first day, and no later release is shown. This suggests uncertain ongoing maintenance rather than established release continuity.
One contributor made all three recent commits, leaving no demonstrated backup maintainer. The linked repository is user-owned rather than organization-owned, so there is no provided backing that offsets this concentration.
Only three commits were recorded in the last three months. That is limited activity for a package intended to support an integration, though it does not by itself prove abandonment.
Composer build tooling is present, but no security-scanning tooling was detected. This reduces transparency around automated security checks without indicating a direct defect.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.